REDHAT-BUG-2401962: Medium severity OpenSSH OpenSSH vulnerability
Published Oct 6, 2025
·Updated
ssh in OpenSSH before 10.1 allows the '\0' character in an ssh:// URI, potentially leading to code execution when a ProxyCommand is used.
Affected Software
1 affected component
OpenSSH OpenSSH<10.1
Event History
Oct 6, 2025
Data Sourced
via Red Hat·07:01 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2401962?
The severity of REDHAT-BUG-2401962 is considered critical due to the potential for code execution through manipulated ssh:// URIs.
2
How do I fix REDHAT-BUG-2401962?
To fix REDHAT-BUG-2401962, upgrade OpenSSH to version 10.1 or later where the vulnerability has been addressed.
3
What can be exploited in REDHAT-BUG-2401962?
REDHAT-BUG-2401962 can be exploited through the inclusion of a '\0' character in ssh:// URIs when using ProxyCommand.
4
Which versions of OpenSSH are affected by REDHAT-BUG-2401962?
OpenSSH versions prior to 10.1 are affected by REDHAT-BUG-2401962.
5
Is there a workaround for REDHAT-BUG-2401962?
Currently, the best approach for REDHAT-BUG-2401962 is to upgrade to a patched version of OpenSSH, as no known workaround exists.