Security Advisory

CVE-2014-2653

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-03-27 10:00:00
Last updated 2026-05-28 17:43:51
Assigner mitre
State PUBLISHED

Description

The verify_host_key function in sshconnect.c in the client in OpenSSH 6.6 and earlier allows remote servers to trigger the skipping of SSHFP DNS RR checking by presenting an unacceptable HostCertificate.