Bug#1143936: openssh: CVE-2026-55655

Moritz Mühlenhoff <[email protected]>
Newsgroups gmane.linux.debian.devel.ssh
Message-ID <andZZ4VJnwrHK_1c__21150.3908781864$1786206686$gmane$org@pisco.westfalen.local>
Source: openssh
X-Debbugs-CC: [email protected]
Severity: important
Tags: security

Hi,

The following vulnerability was published for openssh.

CVE-2026-55655[0]:
| A flaw was found in OpenSSH. A local unprivileged attacker on a
| Linux client host can hijack client-side X11 forwarding connections.
| This is possible by pre-binding the preferred abstract X socket name
| when X11 forwarding is enabled and a local UNIX-domain X socket is
| used. A successful attack can compromise the confidentiality of
| forwarded X11 traffic, including sensitive window contents and
| input, and may allow some manipulation of the forwarded session.

https://bugzilla.redhat.com/show_bug.cgi?id=2462250 is the only
reference and Red Hat released an update, but it's unclear whether
this is an issue in upstream OpenSSH or one of their patches.


If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2026-55655
    https://www.cve.org/CVERecord?id=CVE-2026-55655

Please adjust the affected versions in the BTS as needed.
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.