Beveiligingsadvies

CVE-2014-2653

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2014-03-27 10:00:00
Laatst bijgewerkt 2026-05-28 17:43:51
Toegewezen door mitre
CVSS-score 6.5
Status PUBLISHED

Beschrijving

The verify_host_key function in sshconnect.c in the client in OpenSSH 6.6 and earlier allows remote servers to trigger the skipping of SSHFP DNS RR checking by presenting an unacceptable HostCertificate.