{"id":183658,"date":"2026-10-06T22:53:58","date_gmt":"2026-10-06T20:53:58","guid":{"rendered":"https:\/\/prohoster.info\/blog\/news\/vypusk-openssh-10-6-s-ustraneniem-uyazvimostej"},"modified":"2026-10-06T22:54:02","modified_gmt":"2026-10-06T20:54:02","slug":"openssh-10-6-released-with-vulnerability-fixes","status":"publish","type":"post","link":"https:\/\/prohoster.info\/en\/blog\/news\/openssh-10-6-released-with-vulnerability-fixes","title":{"rendered":"OpenSSH 10.6 has been released with vulnerabilities fixed.","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>OpenSSH 10.6 has been released, an open implementation of a client and server for operating with SSH 2.0 and SFTP protocols. Security issues have been resolved, most of which were identified through code analysis using AI tools (CVE identifiers have not been assigned):  <\/p>\n<ul>\n<li class=\"l\"> A vulnerability in sftp allows for writing a file outside of the target directory when accessing a server controlled by malicious actors.\n<li class=\"l\"> Two vulnerabilities in the GSSAPI implementation in sshd, caused by state retention between different authentication attempts. GSSAPI credentials could persist after a failed authentication attempt and be used in a subsequent successful authentication attempt. The issues arise when GSSAPIAuthentication is enabled.\n<li class=\"l\"> Support for LZ77 compression has been disabled in sshd and ssh due to the possibility of a side-channel attack that allows the recovery of content from another session when connecting through a multiplexed connection shared with the victim, as malefactor-controlled input affects the overall length of encrypted messages transmitted (LZ77 replaces repeating strings with references in a common buffer for all channels).\n<li class=\"l\"> The ssh utility prohibits the use of characters '$' and '\\' in usernames entered in the command line, as they could allow for code execution when substituting names in the ProxyCommand and Match exec directives specified in the settings.\n<li class=\"l\"> In ssh-keygen, incorrect handling of daylight saving time has been fixed, which caused the certificate expiration date to shift by 1 hour.\n<li class=\"l\"> To block the creation of zip bombs, checks for exceeding the maximum packet size during data unpacking have been added in sshd and ssh.\n<li class=\"l\"> In sshd, a problem was resolved that allowed the bypass of restrictions imposed by the 'restrict' keyword in the authorized_keys file, which was not applied to tunnels (PermitTunnel).\n<li class=\"l\"> In sshd, an incorrect parsing of the 'none' option inside Match blocks was fixed, which in some directives, such as AuthorizedPrincipalsFile, was interpreted as a filename rather than as an indication of disabling the directive.\n<li class=\"l\"> In sshd, the lack of root privilege dropping on platforms that do not support file descriptor passing and require root rights for PTY allocation has been fixed. This issue manifests in QNX 6, SCO OpenServer 5, and when built with the '--disable-fd-passing' option.    <\/ul>\n<p>Non-vulnerability-related changes:  <\/p>\n<ul>\n<li class=\"l\"> Support for the hybrid cryptoalgorithm ssh-mldsa44-ed25519 is enabled, resilient against brute-force attacks by quantum computers.\n<li class=\"l\"> The WarnWeakCrypto option has been implemented in sshd_config and is enabled by default to manage warnings about establishing connections using key agreement algorithms that are not resistant to brute-force attacks by quantum computers.\n<li class=\"l\"> In ssh-keygen and ssh-add, implementation of the credProtect policy check in credentials is in place to meet verification requirements (PIN or biometrics) before accessing resident keys on FIDO tokens.\n<li class=\"l\"> In ssh-add, the '-P' flag has been added to skip the optional input of a PIN for FIDO and PKCS#11 tokens.\n<li class=\"l\"> In ssh, the ~I command has been implemented to display version information on local and remote systems.\n<li class=\"l\"> In sftp, the mkdir\/lmkdir commands have been given the '-p' flag to create directories as needed.\n<li class=\"l\"> In ssh-keygen, a 'hexdump' mode has been added for exporting keys in the form of hexadecimal dumps (for example, for embedding in documentation).\n<li class=\"l\"> In ssh and sshd, the ChannelTimeout directive now allows specifying timeouts with millisecond precision.\n<li class=\"l\"> The AgentSocketPath option has been added to sshd to specify the path to $SSH_AUTH_SOCK when forwarding the agent (e.g., user:.ssh\/agent for subdirectories in $HOME and shared:\/tmp for shared directories).\n<li class=\"l\"> In ssh-agent, the '-A' flag has been added to specify directories with agent sockets in which prefixes 'user:' and 'shared:' are allowed, similar to the AgentSocketPath option.\n<li class=\"l\"> In sshd, the checking of public keys has been separated from authentication attempts. An option 'PubkeyOptions max-pk-ok:nnnn' has been added to configure the number of public key check attempts (default is 6), after which the connection will be terminated due to the MaxAuthTries limit.\n<li class=\"l\"> In ssh and sshd, support for the value 'all' has been added to the TCPKeepAlive option, including sending keepalive packets not only for the main connection but also for connections forwarded through it.          <\/ul>\n<p>Source: <a content=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=66410\">opennet.ru<\/a> <\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u041e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043d \u0432\u044b\u043f\u0443\u0441\u043a OpenSSH 10.6, \u043e\u0442\u043a\u0440\u044b\u0442\u043e\u0439 \u0440\u0435\u0430\u043b\u0438\u0437\u0430\u0446\u0438\u0438 \u043a\u043b\u0438\u0435\u043d\u0442\u0430 \u0438 \u0441\u0435\u0440\u0432\u0435\u0440\u0430 \u0434\u043b\u044f \u0440\u0430\u0431\u043e\u0442\u044b \u043f\u043e \u043f\u0440\u043e\u0442\u043e\u043a\u043e\u043b\u0430\u043c SSH 2.0 \u0438 SFTP. \u0423\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u044b \u043f\u0440\u043e\u0431\u043b\u0435\u043c\u044b \u0441 \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c\u044e, \u0431\u043e\u043b\u044c\u0448\u0438\u043d\u0441\u0442\u0432\u043e \u0438\u0437 \u043a\u043e\u0442\u043e\u0440\u044b\u0445 \u0432\u044b\u044f\u0432\u043b\u0435\u043d\u044b \u043f\u0440\u0438 \u0430\u043d\u0430\u043b\u0438\u0437\u0435 \u043a\u043e\u0434\u0430 \u0441 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043d\u0438\u0435\u043c AI-\u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442\u043e\u0432 (CVE-\u0438\u0434\u0435\u043d\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u043e\u0440\u044b \u043d\u0435 \u043d\u0430\u0437\u043d\u0430\u0447\u0435\u043d\u044b): \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 sftp, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u0437\u0430\u043f\u0438\u0441\u0430\u0442\u044c \u0444\u0430\u0439\u043b \u0437\u0430 \u043f\u0440\u0435\u0434\u0435\u043b\u044b \u0446\u0435\u043b\u0435\u0432\u043e\u0439 \u0434\u0438\u0440\u0435\u043a\u0442\u043e\u0440\u0438\u0438 \u043f\u0440\u0438 \u043e\u0431\u0440\u0430\u0449\u0435\u043d\u0438\u0438 \u043a \u043f\u043e\u0434\u043a\u043e\u043d\u0442\u0440\u043e\u043b\u044c\u043d\u043e\u043c\u0443 \u0437\u043b\u043e\u0443\u043c\u044b\u0448\u043b\u0435\u043d\u043d\u0438\u043a\u0430\u043c \u0441\u0435\u0440\u0432\u0435\u0440\u0443. \u0414\u0432\u0435 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u0432 \u0440\u0435\u0430\u043b\u0438\u0437\u0430\u0446\u0438\u0438 GSSAPI [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":10,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-183658","post","type-post","status-publish","format-standard","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.3 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u041e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043d \u0432\u044b\u043f\u0443\u0441\u043a OpenSSH 10.6, \u043e\u0442\u043a\u0440\u044b\u0442\u043e\u0439 \u0440\u0435\u0430\u043b\u0438\u0437\u0430\u0446\u0438\u0438 \u043a\u043b\u0438\u0435\u043d\u0442\u0430 \u0438 \u0441\u0435\u0440\u0432\u0435\u0440\u0430 \u0434\u043b\u044f \u0440\u0430\u0431\u043e\u0442\u044b \u043f\u043e \u043f\u0440\u043e\u0442\u043e\u043a\u043e\u043b\u0430\u043c SSH 2.0 \u0438 SFTP.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Alexander Kovalev\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/en\/blog\/news\/openssh-10-6-released-with-vulnerability-fixes\" \/>\n\t\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.3\" \/>\n\t\t<meta property=\"og:locale\" content=\"en_US\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0412\u044b\u043f\u0443\u0441\u043a OpenSSH 10.6 \u0441 \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0438\u0435\u043c \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u041e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043d \u0432\u044b\u043f\u0443\u0441\u043a OpenSSH 10.6, \u043e\u0442\u043a\u0440\u044b\u0442\u043e\u0439 \u0440\u0435\u0430\u043b\u0438\u0437\u0430\u0446\u0438\u0438 \u043a\u043b\u0438\u0435\u043d\u0442\u0430 \u0438 \u0441\u0435\u0440\u0432\u0435\u0440\u0430 \u0434\u043b\u044f \u0440\u0430\u0431\u043e\u0442\u044b \u043f\u043e \u043f\u0440\u043e\u0442\u043e\u043a\u043e\u043b\u0430\u043c SSH 2.0 \u0438 SFTP.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/en\/blog\/news\/openssh-10-6-released-with-vulnerability-fixes\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2026-10-06T20:53:58+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2026-10-06T20:54:02+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47 OpenSSH 10.6 release with vulnerability fixes | ProHoster","description":"OpenSSH 10.6 has been released, an open implementation of a client and server for operating with SSH 2.0 and SFTP protocols.","canonical_url":"https:\/\/prohoster.info\/en\/blog\/news\/openssh-10-6-released-with-vulnerability-fixes","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"en_US","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0412\u044b\u043f\u0443\u0441\u043a OpenSSH 10.6 \u0441 \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0438\u0435\u043c \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439 | ProHoster","og:description":"\u041e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043d \u0432\u044b\u043f\u0443\u0441\u043a OpenSSH 10.6, \u043e\u0442\u043a\u0440\u044b\u0442\u043e\u0439 \u0440\u0435\u0430\u043b\u0438\u0437\u0430\u0446\u0438\u0438 \u043a\u043b\u0438\u0435\u043d\u0442\u0430 \u0438 \u0441\u0435\u0440\u0432\u0435\u0440\u0430 \u0434\u043b\u044f \u0440\u0430\u0431\u043e\u0442\u044b \u043f\u043e \u043f\u0440\u043e\u0442\u043e\u043a\u043e\u043b\u0430\u043c SSH 2.0 \u0438 SFTP.","og:url":"https:\/\/prohoster.info\/en\/blog\/news\/openssh-10-6-released-with-vulnerability-fixes","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2026-10-06T20:53:58+00:00","article:modified_time":"2026-10-06T20:54:02+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":[],"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts\/183658","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/users\/10"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/comments?post=183658"}],"version-history":[{"count":1,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts\/183658\/revisions"}],"predecessor-version":[{"id":183659,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts\/183658\/revisions\/183659"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/media?parent=183658"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/categories?post=183658"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/tags?post=183658"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}