Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Oracle Linux 10 ELSA-2025-23479 openssh Moderate Access Control Issues

oracle
Calendar Grey December 20, 2025
Oracle Linux Logo Esm H88
Security advisory for Oracle Linux 10 updates addressing moderate openssh vulnerabilities for better system protection.
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

Summary

[9.9p1-12.0.1] - Upstream references found with /usr/bin/ssh [Orabug: 37824421] [9.9p1-12] - CVE-2025-61984: Reject usernames with control characters Resolves: RHEL-128397 - CVE-2025-61985: Reject URL-strings with NULL characters Resolves: RHEL-128387

SRPMs

http://oss.oracle.com/ol10/SRPMS-updates/openssh-9.9p1-12.0.1.el10_1.src.rpm

x86_64

openssh-9.9p1-12.0.1.el10_1.x86_64.rpm openssh-askpass-9.9p1-12.0.1.el10_1.x86_64.rpm openssh-clients-9.9p1-12.0.1.el10_1.x86_64.rpm openssh-keycat-9.9p1-12.0.1.el10_1.x86_64.rpm openssh-keysign-9.9p1-12.0.1.el10_1.x86_64.rpm openssh-server-9.9p1-12.0.1.el10_1.x86_64.rpm

aarch64

openssh-9.9p1-12.0.1.el10_1.aarch64.rpm openssh-askpass-9.9p1-12.0.1.el10_1.aarch64.rpm openssh-clients-9.9p1-12.0.1.el10_1.aarch64.rpm openssh-keycat-9.9p1-12.0.1.el10_1.aarch64.rpm openssh-keysign-9.9p1-12.0.1.el10_1.aarch64.rpm openssh-server-9.9p1-12.0.1.el10_1.aarch64.rpm

Related CVEs: CVE-2025-61984 CVE-2025-61985

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here