CVE-2026-35385Patch(openbsd / openssh)

LOWCVSS 8.1 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch openbsd openssh systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

In OpenSSH before 10.3, a file downloaded by scp may be installed setuid or setgid, an outcome contrary to some users' expectations, if the download is performed as root with -O (legacy scp protocol) and without -p (preserve mode).

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-281

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • openssh

Threat summary

  • Patch or workaround signal is available
  • 6 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 3d ago at 2 mentions (2026-04-03); latest day: 1
  • 6 total mentions across 5 days

Affected systems

Vendors
Products
openssh

Deep dive

Activity timeline6 mentions / 5d
01122Mentions · 2026-04-02: 1Mentions · 2026-04-03: 2Mentions · 2026-04-20: 1Mentions · 2026-05-04: 1Mentions · 2026-05-18: 1Patch / Workaround · 2026-04-03: 1Patch / Workaround · 2026-04-20: 1Patch / Workaround · 2026-05-04: 1Technical Details · 2026-04-03: 1Technical Details · 2026-04-20: 1Technical Details · 2026-05-18: 104-0204-0304-2005-0405-18
Signal classification3 categories
Patch
350.0%
Disclosure
233.3%
General
116.7%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-04-021
Disclosure1
2026-04-032
General1Patch1
2026-04-201
Patch1
2026-05-041
Patch1
2026-05-181
Disclosure1
Full discourse6 posts
  • Cantina 🪐@cantinasecurity
    Patch

    OpenSSH 10.3p1 fixed two issues we reported: CVE-2026-35385 in scp and CVE-2026-35387 in ECDSA policy handling. Different bugs, same lesson: mature infrastructure still carries security debt that only shows up when someone re-reads the assumptions.

    Post summary

    The text announces that OpenSSH 10.3p1 incorporates fixes for CVE-2026-35385 (scp) and CVE-2026-35387 (ECDSA policy handling), highlighting ongoing security maintenance.

    10040421
    19.5K followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    The severity is increased for this new vulnerability affecting OpenSSH (CVE-2026-35385) https://vuldb.com/vuln/354929

    Post summary

    The note announces a new OpenSSH vulnerability (CVE-2026-35385) with an increased severity, referencing a vuldb.com entry for details.

    0100198
    2.1K followersView on X
  • Ferramentas Linux@Cezar_H_Linux
    Disclosure

    OpenSSH vulnerabilities CVE-2026-35385 & CVE-2026-35414 affect #openSUSE. Read more -> https://tinyurl.com/4vxdppw6 #Security https://t.co/RLvNLhUujm

    Post summary

    The tweet announces that two new OpenSSH vulnerabilities (CVE‑2026‑35385, CVE‑2026‑35414) affect openSUSE and directs readers to a URL for more information.

    1000056
    1.5K followersView on X
  • Kazuki Omo@omokazuki
    Patch

    SIOSセキュリティブログを更新しました。 OpenSSHの脆弱性(High: CVE-2026-35385, Medium: CVE-2026-35414, Low: CVE-2026-35386, CVE-2026-35387, CVE-2026-35388)と10.3/10.3p1の公開 #sios_tech #security #vulnerability #セキュリティ #脆弱性 #linux #openssh #ssh https://security.sios.jp/vulnerability/openssh-vulnerability-20260403/

    Post summary

    The blog announces several new OpenSSH CVEs and the publication of version 10.3/10.3p1, which addresses the identified vulnerabilities.

    00010104
    361 followersView on X
  • S.Komichevsen Matsuk@w4yh
    Patch

    OpenSSH(scp) 7.5 Imortant RHEL8, 9用のアップデート来ましたね // CVE-2026-35385 - Red Hat Customer Portal https://access.redhat.com/security/cve/cve-2026-35385

    Post summary

    Red Hat has released an update for RHEL 8 and 9 to address CVE-2026-35385, which impacts OpenSSH(scp) 7.5.

    00000152
    321 followersView on X
  • IT関連サイト記事@itit7777
    General

    IT関連サイト記事が更新されました!記事はこちらから⇒ OpenSSHの脆弱性(High: CVE-2026-35385, Medium: CVE-2026-35414, Low: CVE-2026-35386, CVE-2026-35387, CVE-2026-35388)と、OpenSSH 10.3/10.3p1の公開 https://security.sios.jp/vulnerability/openssh-vulnerability-20260403/

    Post summary

    The article announces several OpenSSH CVEs with severity ratings, but does not provide exploitation details, patch info, or technical specifics.

    0000052
    446 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appopenbsdopenssh---

Explore more