Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:6462 - Security Advisory
Issued:
2026-04-02
Updated:
2026-04-02

RHSA-2026:6462 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: openssh security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for openssh is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

OpenSSH is an SSH protocol implementation supported by a number of Linux, UNIX, and similar operating systems. It includes the core files necessary for both the OpenSSH client and server.

Security Fix(es):

  • openssh: OpenSSH GSSAPI: Information disclosure or denial of service due to uninitialized variables (CVE-2026-3497)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 9 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 9 s390x
  • Red Hat Enterprise Linux for Power, little endian 9 ppc64le
  • Red Hat Enterprise Linux for ARM 64 9 aarch64

Fixes

  • BZ - 2447085 - CVE-2026-3497 openssh: OpenSSH GSSAPI: Information disclosure or denial of service due to uninitialized variables

CVEs

  • CVE-2026-3497

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 9

SRPM
openssh-8.7p1-48.el9_7.src.rpm SHA-256: 51e5e74c35ef3c86adc180a365ab45dfabb0f8f6e6c7b644cd0b16bc15ae0f95
x86_64
openssh-8.7p1-48.el9_7.x86_64.rpm SHA-256: f9167df3110f931cded7e8500f501d1c0693bfbdc9cf92a77cde95f07a47f3c2
openssh-askpass-8.7p1-48.el9_7.x86_64.rpm SHA-256: 3f02cd8192918c03efb6af136890641b462568b368534a801a0f3190bde88a03
openssh-askpass-debuginfo-8.7p1-48.el9_7.x86_64.rpm SHA-256: 1996c02eca23fa28a7f43f2b5252ad507de2b2768ce1276a4b66a227fce0266f
openssh-askpass-debuginfo-8.7p1-48.el9_7.x86_64.rpm SHA-256: 1996c02eca23fa28a7f43f2b5252ad507de2b2768ce1276a4b66a227fce0266f
openssh-clients-8.7p1-48.el9_7.x86_64.rpm SHA-256: 32685f9fc5a8b89d35da65d808f79530b49dba570ad2f3a5e26dba29324c9845
openssh-clients-debuginfo-8.7p1-48.el9_7.x86_64.rpm SHA-256: e2dc782c2187db70b2d4f76098b4beaf869f7b353245e615f7537a43e6c18f26
openssh-clients-debuginfo-8.7p1-48.el9_7.x86_64.rpm SHA-256: e2dc782c2187db70b2d4f76098b4beaf869f7b353245e615f7537a43e6c18f26
openssh-debuginfo-8.7p1-48.el9_7.x86_64.rpm SHA-256: e6431fe3d180288c551d7807e4cea5660f0dad2f9575687f0a8555d5f8673e95
openssh-debuginfo-8.7p1-48.el9_7.x86_64.rpm SHA-256: e6431fe3d180288c551d7807e4cea5660f0dad2f9575687f0a8555d5f8673e95
openssh-debugsource-8.7p1-48.el9_7.x86_64.rpm SHA-256: 6d8f202548a049c0799adef317001cd3b0293599a5789d5c909012bdd921cc2f
openssh-debugsource-8.7p1-48.el9_7.x86_64.rpm SHA-256: 6d8f202548a049c0799adef317001cd3b0293599a5789d5c909012bdd921cc2f
openssh-keycat-8.7p1-48.el9_7.x86_64.rpm SHA-256: c8063f5e5a783f8f7724aad66fa263960baa4c1ef9372039574ffb181994e9f5
openssh-keycat-debuginfo-8.7p1-48.el9_7.x86_64.rpm SHA-256: 5fca149c53a00707360c101112bd102ec60f51d016d07dbc96b801b1199ec087
openssh-keycat-debuginfo-8.7p1-48.el9_7.x86_64.rpm SHA-256: 5fca149c53a00707360c101112bd102ec60f51d016d07dbc96b801b1199ec087
openssh-server-8.7p1-48.el9_7.x86_64.rpm SHA-256: d9169ae925fcdfe6b7afeda69a249b7fa546b929a654d15a9c9123d68a23ad06
openssh-server-debuginfo-8.7p1-48.el9_7.x86_64.rpm SHA-256: 4a70d79da4c2a3ec260bbb3896f0312d1122d59519196d061aa123ceec8f967e
openssh-server-debuginfo-8.7p1-48.el9_7.x86_64.rpm SHA-256: 4a70d79da4c2a3ec260bbb3896f0312d1122d59519196d061aa123ceec8f967e
openssh-sk-dummy-debuginfo-8.7p1-48.el9_7.x86_64.rpm SHA-256: b9464cd542d83cac6ecd8bc0de03568ee8bfcecb65a4ba1b95afae36e77d212b
openssh-sk-dummy-debuginfo-8.7p1-48.el9_7.x86_64.rpm SHA-256: b9464cd542d83cac6ecd8bc0de03568ee8bfcecb65a4ba1b95afae36e77d212b
pam_ssh_agent_auth-0.10.4-5.48.el9_7.x86_64.rpm SHA-256: 7e948d274d08aa3cb86ca85de195c0a0b41c87a426a8a490dfc2ea6e2ce7a613
pam_ssh_agent_auth-debuginfo-0.10.4-5.48.el9_7.x86_64.rpm SHA-256: f7e8edf7ffdee33bcdb0ec57b62a7d33624674e2420096857388915cd90bd97a
pam_ssh_agent_auth-debuginfo-0.10.4-5.48.el9_7.x86_64.rpm SHA-256: f7e8edf7ffdee33bcdb0ec57b62a7d33624674e2420096857388915cd90bd97a

Red Hat Enterprise Linux for IBM z Systems 9

SRPM
openssh-8.7p1-48.el9_7.src.rpm SHA-256: 51e5e74c35ef3c86adc180a365ab45dfabb0f8f6e6c7b644cd0b16bc15ae0f95
s390x
openssh-8.7p1-48.el9_7.s390x.rpm SHA-256: f0d5f3b02fbbdf785b310d54755b6994050b2067a632a230d79db33bb7d76633
openssh-askpass-8.7p1-48.el9_7.s390x.rpm SHA-256: 745e4f9e96b784a08c7c6f8546aa3e6f2c0131ead1487b8a6eb36e7561faebb9
openssh-askpass-debuginfo-8.7p1-48.el9_7.s390x.rpm SHA-256: 5881220ca0e3218d979d1db442773e8df99836591b1469263daaedd4e79b252d
openssh-askpass-debuginfo-8.7p1-48.el9_7.s390x.rpm SHA-256: 5881220ca0e3218d979d1db442773e8df99836591b1469263daaedd4e79b252d
openssh-clients-8.7p1-48.el9_7.s390x.rpm SHA-256: 894c0c9fae5b1a5d85b642994dd48bd577821ce394f377abe068c83eda9fa9a2
openssh-clients-debuginfo-8.7p1-48.el9_7.s390x.rpm SHA-256: 5dae986e6857ce8ad917c66e08dbc6d7649fe82d215a2c18ca176f682521aedc
openssh-clients-debuginfo-8.7p1-48.el9_7.s390x.rpm SHA-256: 5dae986e6857ce8ad917c66e08dbc6d7649fe82d215a2c18ca176f682521aedc
openssh-debuginfo-8.7p1-48.el9_7.s390x.rpm SHA-256: 19f895769deae245cfc716a7d924f1721392f623b8293e125ac4c6f7e3e08077
openssh-debuginfo-8.7p1-48.el9_7.s390x.rpm SHA-256: 19f895769deae245cfc716a7d924f1721392f623b8293e125ac4c6f7e3e08077
openssh-debugsource-8.7p1-48.el9_7.s390x.rpm SHA-256: 6cf5f220310bb54e43b924ff8612fbea47310fc1cc20effe55e00e49019db826
openssh-debugsource-8.7p1-48.el9_7.s390x.rpm SHA-256: 6cf5f220310bb54e43b924ff8612fbea47310fc1cc20effe55e00e49019db826
openssh-keycat-8.7p1-48.el9_7.s390x.rpm SHA-256: 97b67d4284f6e5255d44a495f53953655d69e50819365bb5b6259864d2c253db
openssh-keycat-debuginfo-8.7p1-48.el9_7.s390x.rpm SHA-256: 78bfbb24bf5a43b680171cf86e966994b7c54df3b6264ead7abce35564645d82
openssh-keycat-debuginfo-8.7p1-48.el9_7.s390x.rpm SHA-256: 78bfbb24bf5a43b680171cf86e966994b7c54df3b6264ead7abce35564645d82
openssh-server-8.7p1-48.el9_7.s390x.rpm SHA-256: ce90ec553942c824a929b032e6084dc91c319eecc511b5452427986d0714187f
openssh-server-debuginfo-8.7p1-48.el9_7.s390x.rpm SHA-256: b699f6a2fb3e10307c5bedf37dcc3cbcb39fcf59e7a2a2fb510df547ad99e674
openssh-server-debuginfo-8.7p1-48.el9_7.s390x.rpm SHA-256: b699f6a2fb3e10307c5bedf37dcc3cbcb39fcf59e7a2a2fb510df547ad99e674
openssh-sk-dummy-debuginfo-8.7p1-48.el9_7.s390x.rpm SHA-256: ad2faa80e57cd664157a9ba1a19650808d15a2da1d691204d62ff3ef6bafa61b
openssh-sk-dummy-debuginfo-8.7p1-48.el9_7.s390x.rpm SHA-256: ad2faa80e57cd664157a9ba1a19650808d15a2da1d691204d62ff3ef6bafa61b
pam_ssh_agent_auth-0.10.4-5.48.el9_7.s390x.rpm SHA-256: 99924848d3ea4332cadce6456b4ed85103989d411e9b787dc2a3952f7c5cd726
pam_ssh_agent_auth-debuginfo-0.10.4-5.48.el9_7.s390x.rpm SHA-256: 5727ad7bca782c1647c06fcdf2aeddf4677d1baa975f123fa3124fc64bf25e80
pam_ssh_agent_auth-debuginfo-0.10.4-5.48.el9_7.s390x.rpm SHA-256: 5727ad7bca782c1647c06fcdf2aeddf4677d1baa975f123fa3124fc64bf25e80

Red Hat Enterprise Linux for Power, little endian 9

SRPM
openssh-8.7p1-48.el9_7.src.rpm SHA-256: 51e5e74c35ef3c86adc180a365ab45dfabb0f8f6e6c7b644cd0b16bc15ae0f95
ppc64le
openssh-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 94bcd7a39cce25a18345ccb091bc2f7f217d1db65ecd560568990709da543eb1
openssh-askpass-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 2f4e6420f68d37768fa91f82de9b0c3c9ed63e09ee24fcfcca837059ba379990
openssh-askpass-debuginfo-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 7d315236f62b58499319968d5e1b6a47d25400c7f9e371393c611c3e8f28ab1a
openssh-askpass-debuginfo-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 7d315236f62b58499319968d5e1b6a47d25400c7f9e371393c611c3e8f28ab1a
openssh-clients-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 16edef0f3ba6f6ca005e0dcceeee31f6df4ed3871e2da119fa4c64ae8588ef0d
openssh-clients-debuginfo-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 582f0f9246e56c22ccac87d2b61af53253ef8e56faee6669fb34f6f4a1391efb
openssh-clients-debuginfo-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 582f0f9246e56c22ccac87d2b61af53253ef8e56faee6669fb34f6f4a1391efb
openssh-debuginfo-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 9d44c97c372d535c8f2ff6b4a18145894d4cc12422d884e61932fcd19cb77b39
openssh-debuginfo-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 9d44c97c372d535c8f2ff6b4a18145894d4cc12422d884e61932fcd19cb77b39
openssh-debugsource-8.7p1-48.el9_7.ppc64le.rpm SHA-256: ad99fda40e5f881a5b9c4af5aea7af86f845a8919f369b031b2d792b17636ac7
openssh-debugsource-8.7p1-48.el9_7.ppc64le.rpm SHA-256: ad99fda40e5f881a5b9c4af5aea7af86f845a8919f369b031b2d792b17636ac7
openssh-keycat-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 9fb7d49277a54d2c2bec1f12fc582cb1df099209c154f5d52c400cf913c8908a
openssh-keycat-debuginfo-8.7p1-48.el9_7.ppc64le.rpm SHA-256: ad1e576d3a3b2ddb4d513ade39610aade74e315fcbb38820de1d343e495c8a01
openssh-keycat-debuginfo-8.7p1-48.el9_7.ppc64le.rpm SHA-256: ad1e576d3a3b2ddb4d513ade39610aade74e315fcbb38820de1d343e495c8a01
openssh-server-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 16bfeeb5dc9a3d4a2fd1f79c315736ffc418be3727e1052a4a361a6b85799474
openssh-server-debuginfo-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 04b48dfcb041b810b1960c88661bc70d575a53903eb454f5a7a990c11edee283
openssh-server-debuginfo-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 04b48dfcb041b810b1960c88661bc70d575a53903eb454f5a7a990c11edee283
openssh-sk-dummy-debuginfo-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 0625dee3d36a7325d49f07c5e7e15b3b3d4795bc03db907a374a470e70ef4595
openssh-sk-dummy-debuginfo-8.7p1-48.el9_7.ppc64le.rpm SHA-256: 0625dee3d36a7325d49f07c5e7e15b3b3d4795bc03db907a374a470e70ef4595
pam_ssh_agent_auth-0.10.4-5.48.el9_7.ppc64le.rpm SHA-256: 50473b22ea492a6475fa430a2cfff2e6846ac6af967dbd1003e0e4a38fbca0b6
pam_ssh_agent_auth-debuginfo-0.10.4-5.48.el9_7.ppc64le.rpm SHA-256: 864d74a2af6cd3bbe5dc08b17e8f8c66a01f94f898fdf67ec7ee89f6abd51621
pam_ssh_agent_auth-debuginfo-0.10.4-5.48.el9_7.ppc64le.rpm SHA-256: 864d74a2af6cd3bbe5dc08b17e8f8c66a01f94f898fdf67ec7ee89f6abd51621

Red Hat Enterprise Linux for ARM 64 9

SRPM
openssh-8.7p1-48.el9_7.src.rpm SHA-256: 51e5e74c35ef3c86adc180a365ab45dfabb0f8f6e6c7b644cd0b16bc15ae0f95
aarch64
openssh-8.7p1-48.el9_7.aarch64.rpm SHA-256: bd9450a83d00d528e56191d05bc11ec94b616c13f8d89f02455c6fd060df8559
openssh-askpass-8.7p1-48.el9_7.aarch64.rpm SHA-256: 03e363c888f18510ae35d08cf1f0efa8968428374e60617fe5f5a0e8b2a3275b
openssh-askpass-debuginfo-8.7p1-48.el9_7.aarch64.rpm SHA-256: 6da66bdff83c8b896f97c8cb525a48d0a17be260d2ef64dc3fc7127d94ab0428
openssh-askpass-debuginfo-8.7p1-48.el9_7.aarch64.rpm SHA-256: 6da66bdff83c8b896f97c8cb525a48d0a17be260d2ef64dc3fc7127d94ab0428
openssh-clients-8.7p1-48.el9_7.aarch64.rpm SHA-256: 958e905253df69a927ceca84c0a2fdd75107b5cc3a244ae5ca45becb633765ad
openssh-clients-debuginfo-8.7p1-48.el9_7.aarch64.rpm SHA-256: 24dd704c6051b9bceaf2b2411507b7c2aa4156387551e43c5ab32af1141c7b77
openssh-clients-debuginfo-8.7p1-48.el9_7.aarch64.rpm SHA-256: 24dd704c6051b9bceaf2b2411507b7c2aa4156387551e43c5ab32af1141c7b77
openssh-debuginfo-8.7p1-48.el9_7.aarch64.rpm SHA-256: 6726d079ee4ca14b6f62d7ab88ab1711757f0a2d5278cc69c7ac601f4f018a68
openssh-debuginfo-8.7p1-48.el9_7.aarch64.rpm SHA-256: 6726d079ee4ca14b6f62d7ab88ab1711757f0a2d5278cc69c7ac601f4f018a68
openssh-debugsource-8.7p1-48.el9_7.aarch64.rpm SHA-256: 9311d89060c9b8af2fcbd6a635bc1aad20c13356d6600121d39a8117aa7da4b8
openssh-debugsource-8.7p1-48.el9_7.aarch64.rpm SHA-256: 9311d89060c9b8af2fcbd6a635bc1aad20c13356d6600121d39a8117aa7da4b8
openssh-keycat-8.7p1-48.el9_7.aarch64.rpm SHA-256: f6d22649d528b694a9a4dd5185fc5ee0c925f5442aaae58a0dbefafb49f3a580
openssh-keycat-debuginfo-8.7p1-48.el9_7.aarch64.rpm SHA-256: 45ff5c9f40ec3531b0340a21378394f3255662dd7c4e07c55bd0cc14207f0c0d
openssh-keycat-debuginfo-8.7p1-48.el9_7.aarch64.rpm SHA-256: 45ff5c9f40ec3531b0340a21378394f3255662dd7c4e07c55bd0cc14207f0c0d
openssh-server-8.7p1-48.el9_7.aarch64.rpm SHA-256: 40b0fe800a62290403fb359b8cd599a3422e4657b0c29f36a04a8b2ebcaabd67
openssh-server-debuginfo-8.7p1-48.el9_7.aarch64.rpm SHA-256: f71541678f6babd50f2dba0eaac59b23fd93089356b0b0f3b32a10a7bce31094
openssh-server-debuginfo-8.7p1-48.el9_7.aarch64.rpm SHA-256: f71541678f6babd50f2dba0eaac59b23fd93089356b0b0f3b32a10a7bce31094
openssh-sk-dummy-debuginfo-8.7p1-48.el9_7.aarch64.rpm SHA-256: 04eda21501781097cd8dd439e55a74e40fc310957e2d30b53b61ef6045bae45d
openssh-sk-dummy-debuginfo-8.7p1-48.el9_7.aarch64.rpm SHA-256: 04eda21501781097cd8dd439e55a74e40fc310957e2d30b53b61ef6045bae45d
pam_ssh_agent_auth-0.10.4-5.48.el9_7.aarch64.rpm SHA-256: 5b38de3daa5b657a80f1b89e9368ecc40cbcad342b60c4e179cbbdcd4077cdb0
pam_ssh_agent_auth-debuginfo-0.10.4-5.48.el9_7.aarch64.rpm SHA-256: d2021ffdca9cbed63d67a19535e486b7ededa51c5ec546e2fc7fb00f9e3bc95b
pam_ssh_agent_auth-debuginfo-0.10.4-5.48.el9_7.aarch64.rpm SHA-256: d2021ffdca9cbed63d67a19535e486b7ededa51c5ec546e2fc7fb00f9e3bc95b

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility