CVE-2025-32728
CVE-2025-32728
In sshd in OpenSSH before 10.0, the DisableForwarding directive does not adhere to the documentation stating that it disables X11 and agent forwarding.
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N
Produtos afetados
OpenBSD · OpenSSHQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
https://ftp.openbsd.org/pub/OpenBSD/patches/7.6/common/013_ssh.patch.sighttps://github.com/openssh/openssh-portable/commit/fc86875e6acb36401dfc1dfb6b628a9d1460f367https://lists.debian.org/debian-lts-announce/2025/05/msg00008.htmlhttps://lists.mindrot.org/pipermail/openssh-unix-dev/2025-April/041879.htmlhttps://security.netapp.com/advisory/ntap-20250425-0002/https://www.openssh.com/txt/release-10.0https://www.openssh.com/txt/release-7.4