CVE Vulnerabilities

CVE-2025-32728

Expected Behavior Violation

Published: Apr 10, 2025 | Modified: Apr 10, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
4.3 MODERATE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N
Ubuntu
MEDIUM

In sshd in OpenSSH before 10.0, the DisableForwarding directive does not adhere to the documentation stating that it disables X11 and agent forwarding.

Weakness

A feature, API, or function does not perform according to its specification.

Affected Software

Name Vendor Start Version End Version
Openssh Ubuntu devel *
Openssh Ubuntu esm-infra/bionic *
Openssh Ubuntu fips-preview/jammy *
Openssh Ubuntu fips-updates/bionic *
Openssh Ubuntu fips-updates/focal *
Openssh Ubuntu fips-updates/jammy *
Openssh Ubuntu fips/bionic *
Openssh Ubuntu fips/focal *
Openssh Ubuntu focal *
Openssh Ubuntu jammy *
Openssh Ubuntu noble *
Openssh Ubuntu oracular *
Openssh-ssh1 Ubuntu devel *
Openssh-ssh1 Ubuntu esm-apps/noble *
Openssh-ssh1 Ubuntu focal *
Openssh-ssh1 Ubuntu jammy *
Openssh-ssh1 Ubuntu noble *
Openssh-ssh1 Ubuntu oracular *
Openssh-ssh1 Ubuntu upstream *

References