RHSA-2026:5475HighCVSS 8.2

Red Hat Security Advisory: Red Hat Hardened Images RPM Release

Published
March 23, 2026
Last Modified
May 29, 2026

🔗 CVE IDs covered (3)

📋 Description

CVE-2025-61984 — openssh: OpenSSH: Control characters in usernames can lead to code execution via ProxyCommand CVE-2025-61985 — openssh: OpenSSH: Null character in ssh:// URI can lead to code execution via ProxyCommand CVE-2026-3497 — openssh: OpenSSH GSSAPI: Information disclosure or denial of service due to uninitialized variables

🔗 References (6)