Denial of Service: asymmetric resource consumption of memory and CPU
Affected Software | Affected Version | How to fix |
---|---|---|
debian/openssh | <=1:9.9p1-3 | 1:8.4p1-5+deb11u3 1:8.4p1-5+deb11u4 1:9.2p1-2+deb12u4 1:9.2p1-2+deb12u5 1:9.9p2-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-26466 is classified as a Denial of Service vulnerability due to asymmetric resource consumption affecting memory and CPU.
To mitigate CVE-2025-26466, update to versions 1:9.9p1-3 or later of the OpenSSH package.
CVE-2025-26466 affects OpenSSH versions up to and including 1:9.9p1-3.
Yes, CVE-2025-26466 can be exploited remotely, leading to resource exhaustion on the server.
The potential impacts of CVE-2025-26466 include service disruption due to excessive consumption of server resources.