Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
红帽产品勘误 RHSA-2026:25063 - Security Advisory
发布:
2026-06-10
已更新:
2026-06-10

RHSA-2026:25063 - Security Advisory

  • 概述
  • 更新的软件包

概述

Important: openssh security update

类型/严重性

Security Advisory: Important

Red Hat Insights 补丁分析

识别并修复受此公告影响的系统。

查看受影响的系统

标题

An update for openssh is now available for Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

描述

OpenSSH is an SSH protocol implementation supported by a number of Linux, UNIX, and similar operating systems. It includes the core files necessary for both the OpenSSH client and server.

Security Fix(es):

  • OpenSSH: OpenSSH: Privilege escalation via scp legacy protocol when not preserving file mode (CVE-2026-35385)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

解决方案

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

受影响的产品

  • Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension 6 x86_64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension 6 i386
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension (for IBM z Systems) 6 s390x

修复

  • BZ - 2454469 - CVE-2026-35385 OpenSSH: OpenSSH: Privilege escalation via scp legacy protocol when not preserving file mode

CVE

  • CVE-2026-35385

参考

  • https://access.redhat.com/security/updates/classification/#important
备注: 可能有这些软件包的更新版本。 点击软件包名称查看详情。

Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension 6

SRPM
openssh-5.3p1-125.el6_10.1.src.rpm SHA-256: 8e8d72af3bdb197a9de1e7d812185294d12560cd68b5b529946590e46527f545
x86_64
openssh-5.3p1-125.el6_10.1.x86_64.rpm SHA-256: bba08955c84138e64e50efd31b00d1d659f5b0237edc7daef13e32ae8b2f3146
openssh-askpass-5.3p1-125.el6_10.1.x86_64.rpm SHA-256: efcecd5e35b3446d92b3a740fc6c9c5fb8eb1906583199ff2ea35cd006590ff6
openssh-clients-5.3p1-125.el6_10.1.x86_64.rpm SHA-256: ea7472c0f883d91f21de8f2eb4c191c61832cad32123102da1babf743aa4aeed
openssh-debuginfo-5.3p1-125.el6_10.1.i686.rpm SHA-256: 895ddfc246ce6ecadf9f9322f56bbe670fce97106317eda11ae950ac20b8e7ee
openssh-debuginfo-5.3p1-125.el6_10.1.x86_64.rpm SHA-256: 10cb932ce9b125aba6b6b8cf4cd8613c8242c5910b6dab01239d4823ef9630f8
openssh-debuginfo-5.3p1-125.el6_10.1.x86_64.rpm SHA-256: 10cb932ce9b125aba6b6b8cf4cd8613c8242c5910b6dab01239d4823ef9630f8
openssh-ldap-5.3p1-125.el6_10.1.x86_64.rpm SHA-256: 7319273cfd84aad3165b33f93448a150325949cbdb95c289dc22ee8fd15843da
openssh-server-5.3p1-125.el6_10.1.x86_64.rpm SHA-256: 2a24d3fdbb978828143480a40b7b0690915756485af57ad9fea20cfd9bd75cd1
pam_ssh_agent_auth-0.9.3-125.el6_10.1.i686.rpm SHA-256: abbdfd029f61a4444d7e28692d47e73274aa691e9091635de4cb5d007ff6e6cd
pam_ssh_agent_auth-0.9.3-125.el6_10.1.x86_64.rpm SHA-256: 6fb553ce231d6a94ad9aa2c4d845b40849e5f378f6117b43f8144484964ca70a
i386
openssh-5.3p1-125.el6_10.1.i686.rpm SHA-256: c79373c31c5ceb858086c69999cfee31a50514b423ce9d6731abc0ea67c0cf3c
openssh-askpass-5.3p1-125.el6_10.1.i686.rpm SHA-256: b98b133f9ddd35d2c99d179d8fe42388e420185403496e83d12be97a2c2fb29b
openssh-clients-5.3p1-125.el6_10.1.i686.rpm SHA-256: fa28c5c5c1431a745ab38676079f3a64c0f73c2cf8a03b5962f51878eec762aa
openssh-debuginfo-5.3p1-125.el6_10.1.i686.rpm SHA-256: 895ddfc246ce6ecadf9f9322f56bbe670fce97106317eda11ae950ac20b8e7ee
openssh-debuginfo-5.3p1-125.el6_10.1.i686.rpm SHA-256: 895ddfc246ce6ecadf9f9322f56bbe670fce97106317eda11ae950ac20b8e7ee
openssh-ldap-5.3p1-125.el6_10.1.i686.rpm SHA-256: ec0adc6cb6c17485b54a6d02feb52467ca8405df153de87ad0b2b309d9d3dee3
openssh-server-5.3p1-125.el6_10.1.i686.rpm SHA-256: 8dcccaf86ed3788d78a961fccc64fe3b0ceeba77da22ae4b4a482d67d718c2cf
pam_ssh_agent_auth-0.9.3-125.el6_10.1.i686.rpm SHA-256: abbdfd029f61a4444d7e28692d47e73274aa691e9091635de4cb5d007ff6e6cd

Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension (for IBM z Systems) 6

SRPM
openssh-5.3p1-125.el6_10.1.src.rpm SHA-256: 8e8d72af3bdb197a9de1e7d812185294d12560cd68b5b529946590e46527f545
s390x
openssh-5.3p1-125.el6_10.1.s390x.rpm SHA-256: 82aface0c464b91a0b9d0372146fadd94e94c96f8b3239740f1c7027e0110cef
openssh-askpass-5.3p1-125.el6_10.1.s390x.rpm SHA-256: dfa11a2b07f255d018c0c3d89da238fccc8e58a337729e31d393fb18918cbd2b
openssh-clients-5.3p1-125.el6_10.1.s390x.rpm SHA-256: 23e7b5e1791ae514f951a24b05dcde27e7c1cdc9064413137c1f496bf2bb1da7
openssh-debuginfo-5.3p1-125.el6_10.1.s390.rpm SHA-256: 02926b936a2750fbdcc2e3f3e6f0196fd86e19181e232634664c7d4b6bfd3581
openssh-debuginfo-5.3p1-125.el6_10.1.s390x.rpm SHA-256: 8211b658b05055de58dab9cd36d4368c281b4e677d0ec16d506c5ea2acbf03d1
openssh-debuginfo-5.3p1-125.el6_10.1.s390x.rpm SHA-256: 8211b658b05055de58dab9cd36d4368c281b4e677d0ec16d506c5ea2acbf03d1
openssh-ldap-5.3p1-125.el6_10.1.s390x.rpm SHA-256: 19fa7678a76bddf401c47a27cc7bf2a0fa5dbdf291946bc8d03d83901165715e
openssh-server-5.3p1-125.el6_10.1.s390x.rpm SHA-256: c55eeac0e7d118340b946e98affa9cbef39cb7ec470b35f87ee2466ccac2eaf1
pam_ssh_agent_auth-0.9.3-125.el6_10.1.s390.rpm SHA-256: 0313f6f523e1d86b67b6bdda24f7b80956984bc8e96cc61aa6de5576d80a9146
pam_ssh_agent_auth-0.9.3-125.el6_10.1.s390x.rpm SHA-256: 3d5e8fd8568253230e267e4467405a66297bfcab7a7c7bd0721f90f270507a81

Red Hat 安全团队联络方式为 secalert@redhat.com。 更多联络细节请参考 https://access.redhat.com/security/team/contact/。

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility