Debian OpenSSH vulnerabilities
83 known vulnerabilities affecting debian/openssh.
Total CVEs
83
CISA KEV
0
Public exploits
16
Exploited in wild
8
Severity breakdown
CRITICAL5HIGH20MEDIUM24LOW34
Vulnerabilities
Page 5 of 5
CVE-2025-61985P4LOWCVSS 3.6fixed in openssh 1:9.2p1-2+deb12u8 (bookworm)2025
CVE-2025-61985 [LOW] CVE-2025-61985: openssh - ssh in OpenSSH before 10.1 allows the '\0' character in an ssh:// URI, potential...
ssh in OpenSSH before 10.1 allows the '\0' character in an ssh:// URI, potentially leading to code execution when a ProxyCommand is used.
Scope: local
bookworm: resolved (fixed in 1:9.2p1-2+deb12u8)
bullseye: open
forky: resolved (fixed in 1:10.1p1-1)
sid: resolved (fixed in 1:10.1p1-1)
trixie: resolved (fixed in 1:10.0p1-7+deb13u1)
debian
CVE-2011-5000P4LOWCVSS 3.5fixed in openssh 1:5.9p1-1 (bookworm)2011
CVE-2011-5000 [LOW] CVE-2011-5000: openssh - The ssh_gssapi_parse_ename function in gss-serv.c in OpenSSH 5.8 and earlier, wh...
The ssh_gssapi_parse_ename function in gss-serv.c in OpenSSH 5.8 and earlier, when gssapi-with-mic authentication is enabled, allows remote authenticated users to cause a denial of service (memory consumption) via a large value in a certain length field. NOTE: there may be limited scenarios in which this issue is relevant.
Scope: local
bookworm: resolved (fixed in 1:5.
debian
CVE-2005-2666P4LOWCVSS 1.2fixed in openssh 1:4.0p1-1 (bookworm)2005
CVE-2005-2666 [LOW] CVE-2005-2666: openssh - SSH, as implemented in OpenSSH before 4.0 and possibly other implementations, st...
SSH, as implemented in OpenSSH before 4.0 and possibly other implementations, stores hostnames, IP addresses, and keys in plaintext in the known_hosts file, which makes it easier for an attacker that has compromised an SSH user's account to generate a list of additional targets that are more likely to have the same password or key.
Scope: local
bookworm: resolved (fixe
debian
← Previous5 / 5