CVE-2026-55654

Publication date 23 June 2026

Last updated 11 September 2026


Ubuntu priority

Cvss 3 Severity Score

3.7 · Low

Score breakdown

Description

A flaw was found in OpenSSH. This vulnerability, a heap out-of-bounds read, occurs during the cleanup of GSSAPI (Generic Security Service Application Programming Interface) indicators when a trailing NULL termination is missing in the auth-indicators array. A remote attacker, under specific configurations involving GSSAPI authentication and a Kerberos environment, could exploit this to cause the SSH authentication path to crash or abort. This leads to a denial of service (DoS), impacting the availability of the SSH service.

Read the notes from the security team

Why is this CVE low priority?

This is a low severity issue

Learn more about Ubuntu priority

Status

Package Ubuntu Release Status
openssh 26.04 LTS resolute
Not affected
25.10 questing Ignored end of life, was deferred [2026-08-17]
24.04 LTS noble
Not affected
22.04 LTS jammy
Not affected
20.04 LTS focal
Not affected
18.04 LTS bionic
Not affected
16.04 LTS xenial
Not affected
14.04 LTS trusty
Not affected
openssh-ssh1 26.04 LTS resolute Ignored
25.10 questing Ignored
24.04 LTS noble Ignored
22.04 LTS jammy Ignored
20.04 LTS focal Ignored
18.04 LTS bionic Ignored

Notes


mdeslaur

openssh-ssh1 is only provided for compatibility with old devices that cannot be upgraded to modern protocols. We will not be providing any security support for the openssh-ssh1 package as it is insecure and should be used in trusted environments only. This appears to be an issue in the Red Hat specific GSSAPI patch. Ubuntu uses a different one.

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
openssh

Severity score breakdown

CVSS version: CVSS v3.0

Base score 3.7 · Low

Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L


Access our resources on patching vulnerabilities