CVE-2025-26465

Published Feb 18, 2025

Last updated a day ago

Overview

AI description

Generated using AI and has not been reviewed by Intruder. May contain errors.

CVE-2025-26465 is a vulnerability in the OpenSSH client that can allow a man-in-the-middle (MitM) attack when the `VerifyHostKeyDNS` option is enabled. This option allows the client to verify the server's identity against DNS records. Due to a logic error in how the server's identity is verified when memory allocation errors occur, an attacker can potentially bypass these checks and impersonate the intended server. This could lead to the theft of sensitive information, such as credentials. While the `VerifyHostKeyDNS` option is currently disabled by default, it was previously enabled by default in certain environments like FreeBSD between September 2013 and March 2023. Administrators are encouraged to review their configurations to ensure this option is not enabled unless specifically required. The vulnerability has existed since late 2014 and highlights the importance of regularly reviewing and updating security configurations.

Description
A vulnerability was found in OpenSSH when the VerifyHostKeyDNS option is enabled. A machine-in-the-middle attack can be performed by a malicious machine impersonating a legit server. This issue occurs due to how OpenSSH mishandles error codes in specific conditions when verifying the host key. For an attack to be considered successful, the attacker needs to manage to exhaust the client's memory resource first, turning the attack complexity high.
Source
secalert@redhat.com
NVD status
Received

Risk scores

CVSS 3.1

Type
Secondary
Base score
6.8
Impact score
5.2
Exploitability score
1.6
Vector string
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N
Severity
MEDIUM

Weaknesses

secalert@redhat.com
CWE-390

Social media

Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.

Hype score

2

  1. CVE-2025-26465 and CVE-2025-26466 allow attackers to execute #MitM and #DoS attacks. These flaws impact OpenSSH clients and servers, making it possible for adversaries to intercept SSH connections or cause service disruptions. https://t.co/F9Z8CnpGyr https://t.co/lnTXDVDkXB

    @provintell

    20 Feb 2025

    8 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. 🚨 New OpenSSH vulnerabilities found! 🔸 CVE-2025-26465: MitM attacks if VerifyHostKeyDNS is enabled 🔸 CVE-2025-26466: DoS attacks disrupting servers Public exploit code is out — update to OpenSSH 9.9p2! 💻 #Deepweb #Darkweb Breaking news from the world… https://t.co/ZF7G3lwjoe

    @godeepweb

    20 Feb 2025

    43 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. #OpenSSH 推出 9.9p2 版修复安全漏洞,其中 CVE-2025-26465 漏洞可在无需用户交互的情况下发起中间人劫持。 这个漏洞主要影响的是 FreeBSD、SUSE、Alpine Linux等,建议使用 OpenSSH 的话都更新到最新版。 查看全文:https://t.co/cGHIwPdECN

    @landiantech

    20 Feb 2025

    254 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. New OpenSSH Flaws Expose Servers to MiTM & DoS Attacks! OpenSSH 9.9p2 patches: 🔹 CVE-2025-26465 – A MitM flaw exploiting 'VerifyHostKeyDNS' to hijack SSH sessions. 🔹 CVE-2025-26466 – A DoS flaw flooding systems with small ping messages. 📢 Update now! Disable… https://t.

    @dCypherIO

    20 Feb 2025

    38 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. Actively exploited CVE : CVE-2025-26465

    @transilienceai

    20 Feb 2025

    15 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  6. Two new OpenSSH vulnerabilities (CVE-2025-26465 & CVE-2025-26466) pose risks of MitM and DoS attacks. Patches are available in version 9.9p2. Update is crucial for security! 🔒 #OpenSSH #EnterpriseSecurity #USA link: https://t.co/IVrT2JwjpS https://t.co/Gwhxib6Jvl

    @TweetThreatNews

    19 Feb 2025

    18 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  7. Looks like OpenSSH has a couple of unexpected guests crashing the party! New vulnerabilities (CVE-2025-26465 & CVE-2025-26466) are here, enabling some sneaky Man-in-the-Middle and pesky DoS attacks. Read more: https://t.co/I3sxFYnn4l https://t.co/7REWshkf76

    @Stealthiss_

    19 Feb 2025

    31 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. 🦹🏻‍♀️🪽 Villain of the Week 🪽🦹🏻‍♀️ CVE-2025-26465 is a vulnerability that has been identified in the OpenSSH client (versions 6.8p1 through 9.9p1) when the VerifyHostKeyDNS option is enabled (whether it is set to 'yes' or 'ask'.). This flaw allows attackers to bypass server

    @vicariusltd

    19 Feb 2025

    62 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  9. ⚠️ Vulnerability Alert: OpenSSH Vulnerabilities Allowing MitM and DoS Attacks 📅 Timeline: Disclosure: 2025-02-18, Patch: 2025-02-18 📌 Attribution: Qualys TRU 🆔cveId: CVE-2025-26465, CVE-2025-26466 🛠️exploitMaturity: Not Available 📂affectedVersions: 6.8p1 - 9.9p1… https://

    @syedaquib77

    19 Feb 2025

    45 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  10. ⚠️ Vulnerability Alert: OpenSSH Vulnerabilities Allowing MitM and DoS Attacks 📅 Timeline: Disclosure: 2025-02-18, Patch: 2025-02-18 📌 Attribution: Qualys TRU 🆔cveId: CVE-2025-26465, CVE-2025-26466 cvssSeverity: [Critical 🔴, High 🟠, Medium 🟡, Low 🟢] 🛠️exploitMaturity:…

    @syedaquib77

    19 Feb 2025

    5 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  11. Załataliście już swoje OpenSSH? Wyszły dwie podatności w OpenSSH: CVE-2025-26465 i CVE-2025-26466 - warto rzucić okiem, czy Wasza Ulubiona Dystrybucja to załatała, a w szczególności czy Wasz dostawca systemów wbudowanych przypadkiem nie używa dalej OpenSSH w dziurawej wersji.

    @komputerow

    19 Feb 2025

    881 Impressions

    1 Retweet

    13 Likes

    0 Bookmarks

    5 Replies

    1 Quote

  12. 🚨 New OpenSSH Vulnerabilities Discovered! 🚨 CVE-2025-26465 enables man-in-the-middle attacks, while CVE-2025-26466 allows denial-of-service exploits. Check if you're vulnerable & secure your system NOW! 🔒 🔗 Read more: https://t.co/wKncCb8IxM #CyberSecurity #OpenSSH #CV

    @BaseFortify

    19 Feb 2025

    52 Impressions

    2 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  13. Wykryto nowe luki w OpenSSH (CVE-2025-26465, CVE-2025-26466), które mogą prowadzić do ataków MITM i DoS. Administratorzy powinni jak najszybciej zaktualizować systemy i sprawdzić konfigurację. #cybersecurity #OpenSSH https://t.co/1KIpArYzkN https://t.co/1KIpArYzkN

    @arkady86

    19 Feb 2025

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  14. OpenSSH CVE fixes are now available in the new Flatcar Alpha, Beta, Stable, LTS-2024 releases! 🔒 CVE fixes & security patches: OpenSSH (CVE-2025-26465, CVE-2025-26466) 📜 Release notes at the usual spot: https://t.co/rZjTiO6fY2 https://t.co/XjoPhLRVx4

    @flatcar

    19 Feb 2025

    146 Impressions

    2 Retweets

    4 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  15. Duas falhas críticas no OpenSSH foram descobertas: CVE-2025-26465 permite ataques de man-in-the-middle e CVE-2025-26466 pode causar negação de serviço. Atualize para a versão 9.9p2 e revise suas configurações! Seu sistema pode estar em risco!

    @IncursioHack

    19 Feb 2025

    19 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  16. OpenSSHにMiTM攻撃とDoS攻撃の脆弱性:CVE-2025-26465 - Codebook https://t.co/Y551ELVHAK #izumino_trend

    @sec_trend

    19 Feb 2025

    54 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  17. CVE-2025-26465, -26466: Two vulnerabilities in OpenSSH, 6.8 rating❗️ MitM and DoS in OpenSSH. The severity level is medium, but the vulns cover many versions. Search at https://t.co/hv7QKSqxTR: 👉 Link: https://t.co/jrDDvYolhG #cybersecurity #vulnerability_map https://t.co/sW1

    @Netlas_io

    19 Feb 2025

    755 Impressions

    2 Retweets

    11 Likes

    1 Bookmark

    0 Replies

    1 Quote

  18. 🚨Nuevas vulnerabilidades de OpenSSH exponen servidores SSH a ataques MiTM y DoS ➡️ Machine-in-the-middle (MitM) y a Denial of Service ⚠️ CVE-2025-26465 ⚠️ CVE-2025-26466 https://t.co/iUgpYhfKHB… https://t.co/UhRNxBAFwt

    @doncaptador

    19 Feb 2025

    37 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  19. OpenSSHの重大な脆弱性がDoS 攻撃や中間者攻撃に悪用される可能性(CVE-2025-26465,CVE-2025-26466) #セキュリティ #セキュリティ対策Lab https://t.co/BntcAwPjHK

    @securityLab_jp

    19 Feb 2025

    23 Impressions

    1 Retweet

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  20. OpenSSH has two new vulnerabilities (CVE-2025-26465, MITM; CVE-2025-26466, DoS). CVE-2025-26465 affects versions 6.8p1-9.9p1, CVE-2025-26466 affects 9.5p1-9.9p1. Upgrade to 9.9p2 immediately to patch. https://t.co/dCqCLYudoD

    @Jfreeg_

    19 Feb 2025

    47 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  21. ⚠️ Vulnerability Alert: OpenSSH Man-in-the-Middle and DoS Attacks 📅 Timeline: Disclosure: 2025-02-18, Patch: 2025-02-18 🆔cveId: CVE-2025-26465, CVE-2025-26466 cvssSeverity: Critical 🔴 🛠️exploitMaturity: Active exploitation reported 📂affectedVersions: 6.8p1 to 9.9p1… http

    @syedaquib77

    19 Feb 2025

    50 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  22. 🚨Alert🚨 CVE-2025-26465 & CVE-2025-26466: OpenSSH Client & Server Vulnerabilities Enables MiTM & DoS Attacks 🧐Deep Dive from @qualys:https://t.co/ITteNz2l4g 📊 67.1M+Services are found on the https://t.co/ysWb28BTvF yearly. 🔗Hunter Link:https://t.co/P2bN5nlz5b 👇Q

    @HunterMapping

    19 Feb 2025

    1238 Impressions

    6 Retweets

    14 Likes

    4 Bookmarks

    0 Replies

    0 Quotes

  23. 🚨Alert🚨 CVE-2025-26465 & CVE-2025-26466: OpenSSH Client & Server Vulnerabilities Enables MiTM & DoS Attacks 🧐Deep Dive from@qualys:https://t.co/ITteNz2STO 📊 67.1M+Services are found on the https://t.co/ysWb28Crld yearly. 🔗Hunter Link:https://t.co/P2bN5nm6UJ 👇Qu

    @HunterMapping

    19 Feb 2025

    86 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  24. Two OpenSSH vulnerabilities allow MitM and DoS attacks. CVE-2025-26465 lets attackers impersonate servers when VerifyHostKeyDNS is enabled, and CVE-2025-26466 causes a pre-auth DoS. Both are fixed in OpenSSH 9.9p2—patch immediately.#OpenSSH #CVE https://t.co/LIcVW30NA4

    @ZaihuaNewsEN

    19 Feb 2025

    31 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  25. Actively exploited CVE : CVE-2025-26465

    @transilienceai

    19 Feb 2025

    25 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  26. New post from https://t.co/uXvPWJy6tj (CVE-2025-26465 | OpenSSH VerifyHostKeyDNS cryptographic issues (Nessus ID 216407)) has been published on https://t.co/0be0tj11SQ

    @WolfgangSesin

    18 Feb 2025

    23 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  27. OpenSSHの新たな脆弱性(CVE-2025-26465、CVE-2025-26466)が発見され、MitM攻撃とDoS攻撃が可能に。影響を受けるバージョンは2014年以降のものが含まれ、最新版9.9p2で修正済み。PoCコードも公開され、早急なアップデートが推奨される。 https://t.co/58WRL2IpNO

    @01ra66it

    18 Feb 2025

    1394 Impressions

    9 Retweets

    24 Likes

    9 Bookmarks

    0 Replies

    1 Quote

  28. OpenSSHに2つの脆弱性(CVE-2025-26465、CVE-2025-26466)が発見され、MitM攻撃やDoS攻撃が可能に。特に、VerifyHostKeyDNSを有効にするとサーバーのなりすましが可能になる。OpenSSH 9.9p2で修正済み。 https://t.co/V3yvbHAU5k

    @01ra66it

    18 Feb 2025

    562 Impressions

    3 Retweets

    11 Likes

    2 Bookmarks

    0 Replies

    0 Quotes

  29. 🚨Nuevas vulnerabilidades de OpenSSH exponen servidores SSH a ataques MiTM y DoS ➡️ Machine-in-the-middle (MitM) y a Denial of Service ⚠️ CVE-2025-26465 ⚠️ CVE-2025-26466 https://t.co/b1Pfxjbch9 https://t.co/7fe19Egy3i

    @elhackernet

    18 Feb 2025

    6574 Impressions

    75 Retweets

    134 Likes

    38 Bookmarks

    1 Reply

    0 Quotes

  30. CVE-2025-26465 A vulnerability was found in OpenSSH when the VerifyHostKeyDNS option is enabled. A machine-in-the-middle attack can be performed by a malicious machine impersonating… https://t.co/sXWDNn1trO

    @CVEnew

    18 Feb 2025

    254 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  31. Two critical vulnerabilities have been found in OpenSSH, which could lead to a machine-in-the-middle (MitM) attack and a denial-of-service (DoS) attack if exploited under certain conditions. 🔴 CVE-2025-26465: Enables a MitM attack on the OpenSSH client if the VerifyHostKeyDNS…

    @cytexsmb

    18 Feb 2025

    204 Impressions

    1 Retweet

    3 Likes

    2 Bookmarks

    0 Replies

    1 Quote

  32. OpenSSH 9.9p2 fixes two critical flaws: a MitM vulnerability (CVE-2025-26465) in VerifyHostKeyDNS (enabled by default in FreeBSD until 2023) and a DoS flaw (CVE-2025-26466) from excessive memory use. Update immediately. https://t.co/hn3uHKqU7b

    @cyberbulletins

    18 Feb 2025

    65 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  33. ⚠️ Dos vulnerabilidades críticas en OpenSSH identificadas como CVE-2025-26465 y CVE-2025-26466, permiten ataques de máquina en el medio (MitM) contra clientes y exploits de denegación de servicio (DoS) previa a la autenticación dirigidos tanto a clientes como a servidores. 🧉 ht

    @MarquisioX

    18 Feb 2025

    67 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  34. Qualysが、OpenSSHに影響を及ぼす2つの重大な脆弱性を発見しました。これらの脆弱性は、中間者攻撃を仕掛けたりDoS攻撃を引き起こしたりする可能性があります。 ・CVE-2025-26465(中間者攻撃の脆弱性) ・CVE-2025-26466(DoS攻撃の脆弱性) OpenSSH 9.9p2で修正済みです。

    @t_nihonmatsu

    18 Feb 2025

    616 Impressions

    2 Retweets

    12 Likes

    1 Bookmark

    1 Reply

    0 Quotes

  35. OpenSSHに中間者攻撃(CVE-2025-26465)とDoS (CVE-2025-2646)の脆弱性。前者はVerifyHostKeyDNSオプションが有効な場合のクライアントが脆弱で、2014年10月の作りこみ。後者はクライアントとサーバの双方が脆弱で、2023年8月の作りこみ。 https://t.co/IsmpdYIYpM… https://t.co/LpvJQoMt12

    @__kokumoto

    18 Feb 2025

    2337 Impressions

    18 Retweets

    36 Likes

    6 Bookmarks

    0 Replies

    0 Quotes

  36. 🔴 Two new vulnerabilities found in OpenSSH – one allowing active Man-in-the-Middle (MitM) attacks and the other leading to Denial-of-Service (DoS). Get the details on CVE-2025-26465 and CVE-2025-26466: https://t.co/uv7L8xhYLL

    @TheHackersNews

    18 Feb 2025

    20695 Impressions

    127 Retweets

    256 Likes

    59 Bookmarks

    3 Replies

    6 Quotes

  37. 🚨 Critical OpenSSH Vulnerabilities – Patch Prioritization KQL to identify all your internet facing OpenSSH servers vulnerable to CVE-2025-26466 and CVE-2025-26465. Get your engineers prioritize patching these servers to version 9.9p2 that is released today. Shields Up Scotty! h

    @0x534c

    18 Feb 2025

    3168 Impressions

    9 Retweets

    50 Likes

    33 Bookmarks

    2 Replies

    1 Quote

  38. OpenSSH Flaws CVE-2025-26465 & CVE-2025-26466 Expose Clients and Servers to Attacks https://t.co/eSiPlVBatG

    @Dinosn

    18 Feb 2025

    12433 Impressions

    86 Retweets

    206 Likes

    63 Bookmarks

    6 Replies

    2 Quotes

  39. Two vulnerabilities fixed in #OpenSSH : CVE-2025-26465 and CVE-2025-26466 https://t.co/LppMvoA5YS

    @nintechnet

    18 Feb 2025

    83 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  40. 📡 OpenSSH’de Kritik Güvenlik Açıkları: CVE-2025-26465 ve CVE-2025-26466 🔴 CVE-2025-26465 → MITM saldırılarına izin veriyor! 🔴 CVE-2025-26466 → SSH sunucularını çökerten DoS saldırıları mümkün! 📌 Etkilenen Sürümler: •6.8p1 - 9.9p1 (MITM - CVE-2025-26465) •9.5p1 - 9.9p1… http

    @tweetozof

    18 Feb 2025

    115 Impressions

    0 Retweets

    1 Like

    1 Bookmark

    0 Replies

    0 Quotes

  41. Qualys TRU Discovers Two #Vulnerabilities in OpenSSH: CVE-2025-26465 & CVE-2025-26466 #cybersecurity The Qualys Threat #Research Unit (TRU) has identified two #vulnerabilities in OpenSSH.... https://t.co/QStg7u0yGF

    @CyberMeowly

    18 Feb 2025

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  42. #OpenSSH Flaws CVE-2025-26465 & CVE-2025-26466 Expose Clients and Servers to Attacks Understand the implications of CVE-2025-26465 & CVE-2025-26466 on OpenSSH. Learn about the risks of machine-in-the-middle and DoS attacks https://t.co/zKAo1uEFDh

    @the_yellow_fall

    18 Feb 2025

    76 Impressions

    0 Retweets

    0 Likes

    1 Bookmark

    0 Replies

    0 Quotes