CVE-2026-35387

Publication date

2026-04-02 16:52:53

Family

mitre

State

PUBLISHED

Description

OpenSSH before 10.3 can use unintended ECDSA algorithms. Listing of any ECDSA algorithm in PubkeyAcceptedAlgorithms or HostbasedAcceptedAlgorithms is misinterpreted to mean all ECDSA algorithms.