CVE Vulnerabilities

CVE-2025-32728

Expected Behavior Violation

Published: Apr 10, 2025 | Modified: May 22, 2025
CVSS 3.x
3.8
LOW
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
4.3 MODERATE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

In sshd in OpenSSH before 10.0, the DisableForwarding directive does not adhere to the documentation stating that it disables X11 and agent forwarding.

Weakness

A feature, API, or function does not perform according to its specification.

Affected Software

NameVendorStart VersionEnd Version
OpensshOpenbsd7.4 (including)10.0 (excluding)
Red Hat Enterprise Linux 10RedHatopenssh-0:9.9p1-11.el10*
OpensshUbuntudevel*
OpensshUbuntuesm-infra/bionic*
OpensshUbuntuesm-infra/focal*
OpensshUbuntufips-preview/jammy*
OpensshUbuntufips-updates/bionic*
OpensshUbuntufips-updates/focal*
OpensshUbuntufips-updates/jammy*
OpensshUbuntufips-updates/noble*
OpensshUbuntufips/bionic*
OpensshUbuntufips/focal*
OpensshUbuntufocal*
OpensshUbuntujammy*
OpensshUbuntunoble*
OpensshUbuntuoracular*
OpensshUbuntuplucky*
OpensshUbuntuquesting*
Openssh-ssh1Ubuntudevel*
Openssh-ssh1Ubuntuesm-apps/noble*
Openssh-ssh1Ubuntufocal*
Openssh-ssh1Ubuntujammy*
Openssh-ssh1Ubuntunoble*
Openssh-ssh1Ubuntuoracular*
Openssh-ssh1Ubuntuplucky*
Openssh-ssh1Ubuntuquesting*
Openssh-ssh1Ubuntuupstream*

References