CVE-2014-2653
Publication date 27 March 2014
Last updated 24 July 2024
Ubuntu priority
Description
The verify_host_key function in sshconnect.c in the client in OpenSSH 6.6 and earlier allows remote servers to trigger the skipping of SSHFP DNS RR checking by presenting an unacceptable HostCertificate.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| openssh | ||
Notes
Patch details
| Package | Patch details |
|---|---|
| openssh |
References
Related Ubuntu Security Notices (USN)
- USN-2164-1
- OpenSSH vulnerability
- 7 April 2014