CVE-2014-2653
Publication date 27 March 2014
Last updated 24 July 2024
Ubuntu priority
The verify_host_key function in sshconnect.c in the client in OpenSSH 6.6 and earlier allows remote servers to trigger the skipping of SSHFP DNS RR checking by presenting an unacceptable HostCertificate.
Status
Package | Ubuntu Release | Status |
---|---|---|
openssh | ||
Notes
Patch details
Package | Patch details |
---|---|
openssh |
References
Related Ubuntu Security Notices (USN)
- USN-2164-1
- OpenSSH vulnerability
- 7 April 2014