CVE-2026-106587
Received Received - Intake

OpenSSH "none" Configuration Option Misinterpretation

Vulnerability report for CVE-2026-106587, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-10-06

Last updated on: 2026-10-06

Assigner: MITRE

Description

In sshd in OpenSSH before 10.6, the value "none" for a configuration option is sometimes interpreted as a filename but was intended to mean that a feature is disabled.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-10-06
Last Modified
2026-10-06
Generated
2026-10-07
AI Q&A
2026-10-07
EPSS Evaluated
N/A
NVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
OpenBSD OpenSSH 0

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-843 The product allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability in OpenSSH before version 10.6 involves a misinterpretation of the configuration option value 'none'. Instead of disabling a feature as intended, the system may treat 'none' as a filename, leading to unintended behavior.

Impact Analysis

The impact includes potential security bypasses or unintended access due to misconfigured SSH settings. An attacker might exploit this to gain unauthorized access or alter system behavior if 'none' is used in sensitive configurations.

Compliance Impact

This vulnerability could lead to unauthorized access or data breaches, violating compliance requirements such as GDPR or HIPAA. Organizations using affected OpenSSH versions may face penalties for failing to secure systems properly.

Mitigation Strategies

Upgrade OpenSSH to version 10.6 or later to address the misinterpretation of the 'none' configuration option. Check configuration files for any instances where 'none' is used and replace them with the intended disabled state as per the documentation.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-106587. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart