OpenSSH 10.3 has been released with five security fixes affecting both the ssh client and sshd, led by a shell-injection risk in ssh(1) where attacker-controlled usernames could trigger arbitrary shell command execution in configurations that use %-token expansion such as %u inside Match exec blocks. The release also fixes improper certificate principal matching in authorized_keys, incorrect acceptance behavior around restricted ECDSA algorithms, and a legacy scp(1) issue that could preserve setuid/setgid bits on downloaded files when run as root under specific conditions.
The update changes certificate handling so empty principals sections no longer act as wildcard matches in risky scenarios, adds command-line validation for ProxyJump/-J to reduce shell-injection exposure, and includes a portability fix for a PAM-related username confusion issue introduced in the OpenSSH 10.2p1 stable branch. OpenSSH 10.3 also drops support for peers that do not implement rekeying and adds operational improvements including IANA-assigned SSH agent forwarding codepoints, per-source penalties for invalid usernames, better multiplexing diagnostics, and fixes for PKCS#11 PIN entry, FIDO/WebAuthn certificate signatures, and an sshd crash condition.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
An oss-sec discussion noted that MITRE had apparently assigned five CVE IDs to the vulnerabilities fixed in OpenSSH 10.3: CVE-2026-35414, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, and CVE-2026-35388. The identifiers covered issues affecting ssh, sshd, and scp that were patched in the 10.3 release.
OpenSSH 10.3 was announced on 2026-04-02 by Damien Miller. The release patched multiple security issues, including an ssh client shell-injection risk via attacker-controlled usernames, several sshd certificate and algorithm-handling flaws, unsafe legacy scp handling of setuid/setgid bits, and a PAM-related username confusion issue in the portable branch.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
10 references tracked. Mallory keeps watching after this page renders.
seclists.org
Open sourceseclists.org
Open sourceseclists.org
Open sourceseclists.org
Open sourcecybersecuritynews.com
Open sourceseclists.org
Open sourcehelpnetsecurity.com
Open sourceseclists.org
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.