[CLSA-2026:1777307655] openssh: Fix of CVE-2026-35414
Type:
security
Severity:
Important
Release date:
2026-04-27 16:34:19 UTC
Description:
- CVE-2026-35414: fix incorrect matching of principals in the authorized_keys principals="..." option when a certificate principal contains a comma character
Updated packages:
  • openssh-8.0p1-6.el8_4.2.tuxcare.els10.x86_64.rpm
    sha:7fd0a47be86b76baaaeace6eb59d2488dec39c0db604d7175adbbf1b0ad7c850
  • openssh-askpass-8.0p1-6.el8_4.2.tuxcare.els10.x86_64.rpm
    sha:93571bec4cb645b4947eab9ab20e9b925a2be6abd0909081d3a2bedd7015ce3e
  • openssh-cavs-8.0p1-6.el8_4.2.tuxcare.els10.x86_64.rpm
    sha:8996f4b17a406b1d59dcf4ed645847644e2780ce43d8e94c82b0b4be127674fc
  • openssh-clients-8.0p1-6.el8_4.2.tuxcare.els10.x86_64.rpm
    sha:6c382594244395c7fda5184471881ac7eea682285f9fc79f8ebd87c8005578be
  • openssh-keycat-8.0p1-6.el8_4.2.tuxcare.els10.x86_64.rpm
    sha:83d8dcccb000639ec21471d8c0e9a99f7f7744934bcda68cae69fc84afa03303
  • openssh-ldap-8.0p1-6.el8_4.2.tuxcare.els10.x86_64.rpm
    sha:ca34373b61ae60a40c227bc4fa886fe62a27a19bc9030356c72d504413a5106d
  • openssh-server-8.0p1-6.el8_4.2.tuxcare.els10.x86_64.rpm
    sha:5db7320f8f3a9269f3889829412d0cc0f9a1e2e30e6ba981bcd8cee4d8e6ac09
  • pam_ssh_agent_auth-0.10.3-7.6.el8_4.1.tuxcare.els10.x86_64.rpm
    sha:9890eb1556b0b8c626e22d350fb83b01fd4605632c93624679e3defb4ca7cd0f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.