High Severity Vulnerability in OpenSSH
Background
OpenSSH is an open-source suite of secure networking utilities based on the SSH protocol. OpenSSH has released a security update to address an authorised keys principals mishandling vulnerability (CVE-2026-35414) affecting OpenSSH before version 10.3.
Impact
Successful exploitation of this vulnerability could allow an authenticated attacker to bypass access controls and gain unauthorised root access to the affected system.
Affected Products
This vulnerability affects OpenSSH versions prior to 10.3.
Mitigation
Users and administrators of affected products are advised to update to the latest versions immediately.
