[CLSA-2026:1784280067] openssh: Fix of 7 CVEs
Type:
security
Severity:
Critical
Release date:
2026-07-17 09:21:47 UTC
Description:
- CVE-2026-59998: document that GSSAPIStrictAcceptorCheck is ineffective when the server is joined to a Windows Active Directory. Backport upstream commit 8058c5bd.
Updated packages:
  • openssh-8.7p1-30.el9_2.tuxcare.els20.x86_64.rpm
    sha:49262c6a966ef51cde32f3af5e7cc1e66242a528dbf735a67b8f28fa5c4936c4
  • openssh-askpass-8.7p1-30.el9_2.tuxcare.els20.x86_64.rpm
    sha:c575888905b605aa487d01b9f5b36f911debd1b8c27c3eadb4485ef49580756b
  • openssh-clients-8.7p1-30.el9_2.tuxcare.els20.x86_64.rpm
    sha:d376a62e54cd8ab4c4e47276b7589e2d3d04747c1779f087e8420a63228f8201
  • openssh-keycat-8.7p1-30.el9_2.tuxcare.els20.x86_64.rpm
    sha:90b4a9515274e81c72fb668c8f8e93544e555d9ecc24c76cd011092f5cb66e9e
  • openssh-server-8.7p1-30.el9_2.tuxcare.els20.x86_64.rpm
    sha:27e2baaec72b10361f0a4655ed96b177c7a4e7c51736027e227858fecff657a8
  • openssh-sk-dummy-8.7p1-30.el9_2.tuxcare.els20.x86_64.rpm
    sha:c4bbaa7538cd36fca61d303ed2877941af8b0078270a9e34f11d25b14bbc256b
  • pam_ssh_agent_auth-0.10.4-5.30.el9_2.tuxcare.els20.x86_64.rpm
    sha:e310ced735001be05fef96ebad50f2f7f3307652c1fbe77a05f9098fe621b4e2
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.