CVE-2026-60002 - OpenSSH Client Use-After-Free Vulnerability

CVE Advisories
Post Reply
Starburst-David
Posts: 286
Joined: Wed Feb 11, 2026 8:31 pm

CVE-2026-60002 - OpenSSH Client Use-After-Free Vulnerability

Post by Starburst-David »

CVE ID: CVE-2026-60002
Published: July 8, 2026
Description: ssh in OpenSSH before 10.4 can have a use-after-free when a server changes its host key during a key re-exchange. (This outcome occurs only on the client side.)
Severity: 7.7 | HIGH

More Information:
https://cvefeed.io/vuln/detail/CVE-2026-60002
 

POSTREACT(ions) SUMMARY

Post Reply

Return to “CVE Advisories”