CVE-2026-59997MediumCVSS 4.2
internal-sftp in sshd in OpenSSH before 10.4 recognizes only the first 9 command-line arguments, which can be important if a later command-line argument would have helped to ensure the intended security properties of an SFTP connection.
🔗 CVE IDs covered (1)
🎯 Affected products1
- azl3 openssh 9.8p1-8 on Azure Linux 3.0
✅ Remediation
KBCBL-Mariner Releases (Security Update) — fixed build 9.8p1-9