Nixpkgs security tracker

Login with GitHub
⚠️ You are using a production deployment that is still only suitable for demo purposes. Any work done in this might be wiped later without notice.

Suggestions search

With package: dropbear

Found 2 matching suggestions

View:
Compact
Detailed
Permalink CVE-2026-3706
3.7 LOW
  • CVSS version: 3.1
  • Attack vector (AV):
  • Attack complexity (AC):
  • Privileges required (PR):
  • User interaction (UI):
  • Scope (S):
  • Confidentiality impact (C):
  • Integrity impact (I):
  • Availability impact (A):
created 1 month, 2 weeks ago Activity log
  • Created suggestion
mkj Dropbear S Range Check curve25519.c unpackneg signature verification

A vulnerability was determined in mkj Dropbear up to 2025.89. Impacted is the function unpackneg of the file src/curve25519.c of the component S Range Check. This manipulation causes improper verification of cryptographic signature. The attack can be initiated remotely. The attack is considered to have high complexity. The exploitability is considered difficult. The exploit has been publicly disclosed and may be utilized. Patch name: fdec3c90a15447bd538641d85e5a3e3ac981011d. To fix this issue, it is recommended to deploy a patch.

Affected products

Dropbear
  • ==2025.52
  • ==2025.2
  • ==2025.48
  • ==2025.78
  • ==2025.81
  • ==2025.85
  • ==2025.54
  • ==2025.28
  • ==2025.21
  • ==2025.39
  • ==2025.79
  • ==2025.3
  • ==2025.18
  • ==2025.22
  • ==2025.88
  • ==2025.26
  • ==2025.41
  • ==2025.19
  • ==2025.68
  • ==2025.37
  • ==2025.6
  • ==2025.55
  • ==2025.10
  • ==2025.69
  • ==2025.56
  • ==2025.64
  • ==2025.60
  • ==2025.80
  • ==2025.84
  • ==2025.86
  • ==2025.45
  • ==2025.23
  • ==2025.17
  • ==2025.89
  • ==2025.77
  • ==2025.14
  • ==2025.61
  • ==2025.38
  • ==2025.42
  • ==2025.8
  • ==2025.59
  • ==2025.15
  • ==2025.53
  • ==2025.87
  • ==2025.62
  • ==2025.7
  • ==2025.82
  • ==2025.32
  • ==2025.5
  • ==2025.24
  • ==2025.72
  • ==2025.35
  • ==2025.29
  • ==2025.11
  • ==2025.44
  • ==2025.1
  • ==2025.66
  • ==2025.47
  • ==2025.67
  • ==2025.71
  • ==2025.57
  • ==2025.73
  • ==2025.20
  • ==2025.74
  • ==2025.63
  • ==2025.12
  • ==2025.51
  • ==2025.30
  • ==2025.40
  • ==2025.34
  • ==2025.9
  • ==2025.31
  • ==2025.25
  • ==2025.13
  • ==2025.70
  • ==2025.50
  • ==2025.27
  • ==2025.75
  • ==2025.36
  • ==2025.76
  • ==2025.58
  • ==2025.16
  • ==2025.0
  • ==2025.65
  • ==2025.46
  • ==2025.43
  • ==2025.33
  • ==2025.83
  • ==2025.4
  • ==2025.49

Matching in nixpkgs

Package maintainers

Permalink CVE-2025-14282
5.4 MEDIUM
  • CVSS version: 3.1
  • Attack vector (AV): NETWORK
  • Attack complexity (AC): LOW
  • Privileges required (PR): LOW
  • User interaction (UI): NONE
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): LOW
  • Integrity impact (I): LOW
  • Availability impact (A): NONE
created 2 months, 1 week ago Activity log
  • Created suggestion
privilege escalation via unix domain socket forwardings

A flaw was found in Dropbear. When running in multi-user mode and authenticating users, the dropbear ssh server does the socket forwardings requested by the remote client as root, only switching to the logged-in user upon spawning a shell or performing some operations like reading the user's files. With the recent ability of also using unix domain sockets as the forwarding destination any user able to log in via ssh can connect to any unix socket with the root's credentials, bypassing both file system restrictions and any SO_PEERCRED / SO_PASSCRED checks performed by the peer.

Affected products

Dropbear
  • =<2025.88
dropbear
  • <2025.88

Matching in nixpkgs

Package maintainers