CVE-2025-26465 is a medium-severity vulnerability in OpenSSH, affecting products like Debian, NetApp, OpenBSD, and Red Hat, that allows a machine-in-the-middle (MiTM) attack when the VerifyHostKeyDNS option is enabled. This flaw, stemming from mishandled error codes during host key verification, has a CVSS score of 6.8 and requires an attacker to exhaust client memory, making its attack complexity high. Despite the high complexity, a successful MiTM could lead to high confidentiality and integrity impacts. While not currently listed on the CISA KEV catalog, it is on the Hot List, indicating active monitoring. There is no public exploit code available, but the vulnerability has garnered significant community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 6.9, <= 9.8CPE matchmatch criteria | cpe:2.3:a:openbsd:openssh:*:*:*:*:*:*:*:* | ||
6.8CPE matchmatch criteria | cpe:2.3:a:openbsd:openssh:6.8:p1:*:*:*:*:*:* | ||
9.9CPE matchmatch criteria | cpe:2.3:a:openbsd:openssh:9.9:-:*:*:*:*:*:* | ||
9.9CPE matchmatch criteria | cpe:2.3:a:openbsd:openssh:9.9:p1:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.2 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
HP ThinPro 8.1 SP7 Security Updates
Jun 3, 2025HP ThinPro 8.1 SP7 Security Updates
Jun 3, 2025VerifyHostKeyDNS server impersonation
Feb 18, 2025VerifyHostKeyDNS server impersonation.
Feb 18, 2025VerifyHostKeyDNS server impersonation.
Feb 18, 2025VerifyHostKeyDNS server impersonation.
Feb 18, 2025openssh: Machine-in-the-middle attack if VerifyHostKeyDNS is enabled
Feb 17, 2025Openssh: machine-in-the-middle attack if verifyhostkeydns is enabled
Feb 11, 2025