← Back to CVE search

CVE-2026-42508

OpenSSH

Description

Previously, a revoked -SignatureKey- belonging to a CA was not correctly checked for revocation. Now, both the -key- and -key.SignatureKey- are checked for @revoked.

CVSS 9.1EPSS 0.5680000000000001%Risk 0.96
View source
Published
2026-05-22 04:16:25
Affected versions
unknown
Type
Critical software
Last modified
2026-08-11 13:18:51
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N