CVE-2023-25136: Fedoraproject Fedora

Medium severity, CVSS 6.5. EPSS: 89.7% chance of exploitation in the next 30 days.

OpenSSH server (sshd) 9.1 introduced a double-free vulnerability during options.kex_algorithms handling. This is fixed in OpenSSH 9.2. The double free can be leveraged, by an unauthenticated remote attacker in the default configuration, to jump to any location in the sshd address space. One third-party report states "remote code execution is theoretically possible."

Affected products

  • Fedoraproject Fedora: version 37 only; version 38 only
  • Netapp 500f Firmware: affected versions not specified
  • Netapp a250 Firmware: affected versions not specified
  • Netapp c250 Firmware: affected versions not specified
  • Netapp Ontap Select Deploy Administration Utility: affected versions not specified
  • OpenBSD OpenSSH: version 9.1 only

Published 2023-02-03. Last modified 2026-06-17.