Medium severity5.0NVD Advisory· Published Jun 23, 2026· Updated Jul 30, 2026
CVE-2026-55655
CVE-2026-55655
Description
A flaw was found in OpenSSH. A local unprivileged attacker on a Linux client host can hijack client-side X11 forwarding connections. This is possible by pre-binding the preferred abstract X socket name when X11 forwarding is enabled and a local UNIX-domain X socket is used. A successful attack can compromise the confidentiality of forwarded X11 traffic, including sensitive window contents and input, and may allow some manipulation of the forwarded session.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
16cpe:2.3:o:redhat:enterprise_linux:10.0:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:o:redhat:enterprise_linux:10.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*
- osv-coords9 versionspkg:rpm/almalinux/opensshpkg:rpm/almalinux/openssh-askpasspkg:rpm/almalinux/openssh-cavspkg:rpm/almalinux/openssh-clientspkg:rpm/almalinux/openssh-keycatpkg:rpm/almalinux/openssh-keysignpkg:rpm/almalinux/openssh-ldappkg:rpm/almalinux/openssh-serverpkg:rpm/almalinux/pam_ssh_agent_auth
< 8.0p1-30.el8_10+ 8 more
- (no CPE)range: < 8.0p1-30.el8_10
- (no CPE)range: < 8.0p1-30.el8_10
- (no CPE)range: < 8.0p1-30.el8_10
- (no CPE)range: < 8.0p1-30.el8_10
- (no CPE)range: < 8.0p1-30.el8_10
- (no CPE)range: < 9.9p1-25.el10_2.alma.1
- (no CPE)range: < 8.0p1-30.el8_10
- (no CPE)range: < 8.0p1-30.el8_10
- (no CPE)range: < 0.10.3-7.30.el8_10
Patches
Vulnerability mechanics
References
6- access.redhat.com/security/cve/CVE-2026-55655nvdVendor Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingVendor Advisory
- access.redhat.com/errata/RHSA-2026:36759nvd
- access.redhat.com/errata/RHSA-2026:47755nvd
- access.redhat.com/errata/RHSA-2026:47756nvd
- access.redhat.com/errata/RHSA-2026:47757nvd
News mentions
0No linked articles in our index yet.