[CLSA-2026:1777455730] openssh: Fix of CVE-2026-3497
Type:
security
Severity:
Important
Release date:
2026-04-29 09:42:15 UTC
Description:
- CVE-2026-3497: fix information disclosure or denial of service due to uninitialized variables in GSSAPI key exchange
Updated packages:
  • openssh-8.0p1-6.el8_4.2.tuxcare.els9.x86_64.rpm
    sha:e0c46d620029ef629dc15c349f2c70f26e48beeb7d9f0a803dcbfb3b871df529
  • openssh-askpass-8.0p1-6.el8_4.2.tuxcare.els9.x86_64.rpm
    sha:8d33cbb57ea887f92705c8d4af43643cce517ba63005d650d0fcf5052a7f8068
  • openssh-cavs-8.0p1-6.el8_4.2.tuxcare.els9.x86_64.rpm
    sha:88efcf8761a1ce61274c387700381cd5d084a6769df02abb3417dfa8d2550351
  • openssh-clients-8.0p1-6.el8_4.2.tuxcare.els9.x86_64.rpm
    sha:4de04e0433300f273a434018c656aee7822884178d902c1bc25c2f6641cbd8b8
  • openssh-keycat-8.0p1-6.el8_4.2.tuxcare.els9.x86_64.rpm
    sha:f00db1990e77fc39ce5a2fc33bde4046ea821401e1b6201c453ee36431f48d24
  • openssh-ldap-8.0p1-6.el8_4.2.tuxcare.els9.x86_64.rpm
    sha:d0582bc6e9458d75fc56d94f08113596d35cd30fec1b1f602421dc21b8e77451
  • openssh-server-8.0p1-6.el8_4.2.tuxcare.els9.x86_64.rpm
    sha:8df22349edbcefa1c5f753bc71986e476efd6d8dafed0fcc0d2370e0cc93cc0c
  • pam_ssh_agent_auth-0.10.3-7.6.el8_4.1.tuxcare.els9.x86_64.rpm
    sha:4f957cafe1ee20d400a394e42ff3d2af46824b1914370b39aafbae7e94be5971
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.