Upstream information

CVE-2026-55654 at MITRE

Description

A flaw was found in OpenSSH. This vulnerability, a heap out-of-bounds read, occurs during the cleanup of GSSAPI (Generic Security Service Application Programming Interface) indicators when a trailing NULL termination is missing in the auth-indicators array. A remote attacker, under specific configurations involving GSSAPI authentication and a Kerberos environment, could exploit this to cause the SSH authentication path to crash or abort. This leads to a denial of service (DoS), impacting the availability of the SSH service.

SUSE information

Overall state of this security issue: Resolved

This issue is currently not rated by SUSE as it is not affecting the SUSE Enterprise products.

CVSS v3 Scores
CVSS detail CNA (Red Hat)
Base Score 3.7
Vector CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Attack Vector Network
Attack Complexity High
Privileges Required None
User Interaction None
Scope Unchanged
Confidentiality Impact None
Integrity Impact None
Availability Impact Low
CVSSv3 Version 3.1
No SUSE Bugzilla entries cross referenced.

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE Liberty Linux 10
  • openssh >= 9.9p1-25.el10_2
  • openssh-askpass >= 9.9p1-25.el10_2
  • openssh-clients >= 9.9p1-25.el10_2
  • openssh-keycat >= 9.9p1-25.el10_2
  • openssh-keysign >= 9.9p1-25.el10_2
  • openssh-server >= 9.9p1-25.el10_2
Patchnames:
RHSA-2026:47757
SUSE Liberty Linux 9
  • openssh >= 9.9p1-9.el9_8
  • openssh-askpass >= 9.9p1-9.el9_8
  • openssh-clients >= 9.9p1-9.el9_8
  • openssh-keycat >= 9.9p1-9.el9_8
  • openssh-server >= 9.9p1-9.el9_8
  • pam_ssh_agent_auth >= 0.10.4-7.9.el9_8
Patchnames:
RHSA-2026:47756


SUSE Timeline for this CVE

CVE page created: Wed Jul 29 21:52:56 2026
CVE page last modified: Sat Aug 1 20:34:43 2026