From foo@bar  Tue Oct  6 18:20:04 2026
Format: 1.8
Date: Tue, 06 Oct 2026 18:00:40 +0100
Source: openssh
Binary: openssh-client openssh-client-dbgsym openssh-client-udeb openssh-common openssh-common-dbgsym openssh-server openssh-server-dbgsym openssh-server-udeb openssh-sftp-server openssh-sftp-server-dbgsym openssh-tests openssh-tests-dbgsym ssh ssh-askpass-gnome ssh-askpass-gnome-dbgsym
Architecture: powerpc
Version: 1:10.6p1-1
Distribution: sid
Urgency: medium
Maintainer: ppc64 / powerpc Build Daemon (debian-project-be-2) <debian-project-be-2@debian-project-be-2.buildd.org>
Changed-By: Colin Watson <cjwatson@debian.org>
Description:
 openssh-client - secure shell (SSH) client, for secure access to remote machines
 openssh-client-udeb - secure shell client for the Debian installer (udeb)
 openssh-common - common files for OpenSSH
 openssh-server - secure shell (SSH) server, for secure access from remote machines
 openssh-server-udeb - secure shell server for the Debian installer (udeb)
 openssh-sftp-server - secure shell (SSH) sftp server module, for SFTP access from remot
 openssh-tests - OpenSSH regression tests
 ssh        - secure shell client and server (metapackage)
 ssh-askpass-gnome - interactive X program to prompt users for a passphrase for ssh-ad
Closes: 1142934 1148080
Changes:
 openssh (1:10.6p1-1) unstable; urgency=medium
 .
   * New upstream release:
     - scp(1): begin deprecating the -R flag, which is used to perform a
       remote-to-remote copy by executing scp on a remote host. This option
       is a fragile optimisation that is difficult to use because it requires
       credentials on the remote host. It also creates security risks if the
       shell quoting rules on the remote system where the copy is performed
       differ from the client's expectations.
 .
       From OpenSSH 10.6, this option will continue to work but will cause a
       deprecation warning to be emitted to standard error. In a future
       release, the option will be ignored and will leave in place the
       default remote-to-remote copy behaviour (copy via the host running
       scp).
     - SECURITY: sftp(1): more strictly validate paths returned from the
       server to avoid some cases where a server could return paths that
       could manipulate a recursive copy operation into writing outside its
       target directory.
     - SECURITY: sshd(8): when GSSAPIAuthentication is in use, only store
       GSSAPI credentials when authentication has succeeded. Avoids a
       situation where credentials from a failed GSSAPIAuthentication attempt
       may persist and be made inappropriately available if another
       authentication subsequently succeeds.
     - SECURITY: sshd(8): reset GSSAPIAuthentication before authentication,
       avoiding state from one authentication attempt being confused with
       that of a later attempt.
     - SECURITY: sshd(8), ssh(1): disable LZ77 dictionary coder to mitigate
       side-channel leaks. A chosen-plaintext attack method exists which
       makes use of dictionary-based compression to recover secrets from one
       channel by interacting with the SSH session's shared compression
       dictionary through another channel.
 .
       Attacker-controlled input can recognizably reflect into the total
       length of transmitted ciphertexts by virtue of LZ77 replacing repeated
       strings with back-references into the SSH session's encoder search
       buffer, which is shared across all channels. For this reason, the
       documentation already recommended against enabling compression for
       connections that share trusted and untrusted traffic.
 .
       This change will reduce the effectiveness of the Compression option.
       Users are encouraged to use application-level compression over the SSH
       protocol where possible, as this will typically be more effective and
       will be completely immune to this type of attack.
     - SECURITY: ssh(1): disallow '$' and '\' characters in usernames entered
       on the command-line to avoid usernames from untrusted sources yielding
       injection in shell context via ProxyCommand, Match exec, etc.
       Usernames specified via the configuration files are not subject to
       this control.
 .
       We continue to recommend against directly exposing ssh(1) and other
       tools' command-lines to untrusted input. Mitigations such as this
       cannot be absolute given the variety of shells and user configurations
       in use.
     - SECURITY: ssh-keygen(1): correct handling of Daylight Saving Time when
       converting dates. Previous handling could cause errors of up to +/- 1
       hour (unless you are in the Antarctica/Troll timezone, where the error
       could be +/- 2 hours). These errors could result in creation of
       certificates with incorrect expiry times.
     - SECURITY: sshd(8), ssh(1): ensure that compressed payloads don't
       inflate past the maximum supported packet length.
     - SECURITY: sshd(8): fully honor the authorized_keys "restrict" keyword,
       which was not being properly applied to tunnel forwarding
       (PermitTunnel, disabled by default).
     - SECURITY: sshd(8): correctly handle some options that accept "none".
       Some options, including AuthorizedPrincipalsFile, were documented as
       accepting "none" as a way to disable them; however, when overridden by
       an sshd_config(5) Match keyword, this argument was being incorrectly
       interpreted as a literal file.
     - All: enable hybrid post-quantum ssh-mldsa44-ed25519 signature
       algorithm. Note that this no longer uses the "@openssh.com" vendor
       extension suffix that the previous experimental implementation used.
       Keys generated with the previous experimental support must be
       regenerated and/or removed.
     - sshd(8): Add the WarnWeakCrypto option to sshd_config(5). This option
       was previously available for the client only. This option is enabled
       by default and will log when the client uses a key agreement scheme
       that is not post-quantum safe.
     - ssh-keygen(1), ssh-add(1): preserve user-verification (PIN or
       biometric) requirement for resident keys loaded from a FIDO token, by
       checking the credential's credProtect policy.
     - ssh(1): include local and remote version strings in the ~I connection
       information display.
     - ssh-add(1): add a -P flag to skip PIN entry for FIDO and PKCS#11
       tokens that do not require it.
     - sftp(1): add '-p' flag for mkdir/lmkdir to create directories as
       required. This flag has similar ergonomics to mkdir(1), and
       previously-existing directories do not cause an error.
     - ssh-keygen(1): add a "hexdump" key export mode that dumps the SSH
       wire-formatted key blob in hex format. Useful when writing
       documentation, tests, etc. E.g. `ssh-keygen -em hexdump -f /key`.
     - ssh(1), sshd(8): ChannelTimeout now accepts timeouts with fractional
       seconds.
     - sshd(8): allow specification of the location of $SSH_AUTH_SOCK used
       for agent forwarding using a new AgentSocketPath option. This supports
       both using a user-specific path, such as the default of a subdirectory
       of $HOME ("user:.ssh/agent"), and the previous approach of allowing
       agent forwarding sockets to be located in a shared directory (e.g.
       "shared:/tmp"). Sockets created in shared directories will be created
       inside a subdirectory with a randomised name.
     - ssh-agent(1): allow specification of agent socket directories using a
       -A flag. It accepts "user:" and "shared:" directory styles similar to
       the sshd AgentSocketPath option.
     - sshd(8): account for public key authentication "key ok" tests
       separately to auth attempts. Add a `PubkeyOptions max-pk-ok:nnnn`
       option to allow a number of PK_OK tests (asking whether the server
       might accept a given public key) that do not count against
       MaxAuthTries, defaulting to 6 attempts. After these attempts are
       exhausted, further attempts count as failed authentications against
       MaxAuthTries. Practically, this allows more keys on disk or held in
       ssh-agent to be checked for use before the server disconnects.
     - ssh(1), sshd(8): extend the existing TCPKeepAlive option to also
       support setting keepalives on sockets created for forwarding
       connections. Previously this option controlled keepalives on the
       connection socket only. TCPKeepAlive "yes" or "transport" enables
       keepalives on the connection socket. "TCPKeepAlive all" additionally
       enables them for forwarding sockets.
     - sshd(8), ssh(1): fix configuration matching on more Turkic languages
       which have disjoint dotted and dotless i/I characters, specifically
       Azerbaijani and Crimean Tatar.
     - ssh(1), sshd(8): don't attempt to set TCP_NODELAY on non-IP/IPv6
       sockets. Eliminates some noise in debug logs.
     - ssh(1): fix case for ssh -G option output.
     - ssh(1), sshd(8): Fix ChannelTimeout specificity; previously a more
       specific channel type (e.g. "session:shell") could clobber a
       user-specified ChannelTimeout if it was less specific (e.g.
       "session").  Also, in some cases, the debug messages were printing 0
       instead of the effective timeout.
     - sftp(1): avoid NULL dereference crash in some circumstances when a
       server fails a stat/lstat operation.
     - sshd(8): close a race condition where a SIGTERM/SIGQUIT would be
       ignored if it was received by the server while it was processing a
       SIGHUP restart request.
     - sshd(8), ssh(1): check key and CA signature types during key parsing
       against allowlists (PubkeyAcceptedAlgorithms, etc) as early as
       possible. This reduces the attack surface presented by disabled
       algorithms.
     - All: switch the fallback implementation of the ed25519 signature
       algorithm used when libcrypto is disabled from SUPERCOP ed25519 to
       libsodium. The libsodium implementation includes a number of
       strictness checks over the original reference implementation we have
       used to this point and a more ergonomic API.
     - ssh-add(1), ssh(1), ssh-keygen(1): fix spin on password entry when the
       program attempting to read a password was started in a background
       process group, with no TTY and with certain signals ignored.
     - scp(1): disallow nul byte in received scp -O filename. This was not
       reachable in normal operation.
     - ssh-keygen(1), ssh(1), sshd(8): implement a maximum number of KDF
       rounds that will be accepted when writing an OpenSSH-format private
       key or when loading one. This limit is set quite high (1M), but
       ensures that a service that is passed a bad key with a ridiculously
       high number of rounds will eventually complete parsing it.
     - ssh-keygen(1): bump the default number of KDF rounds from 24 to 32
       (this is a linear increase, not like bcrypt(3) which is exponential).
     - ssh(1): make StreamLocalBindMask properly respect Host/Match blocks
       and make it first-match-wins as documented.
     - sshd(8): make StreamLocalBindMask properly first-match-wins.
     - sshd(8): don't link sshd against libselinux when SELinux support is
       enabled (note: this library is still linked for the sshd-auth and
       sshd-session helper binaries).
     - sshd(8): restrict mremap(2) flags accepted by the seccomp sandbox.
       Only MREMAP_MAYMOVE is now accepted as other flags may have some
       utility in attack chains.
     - sshd(8): allow PAMServiceName in Match (regressed in 10.4). During the
       refactor of server option parsing, the ability to set PAMServiceName
       in Match blocks was accidentally disabled.
   * Generate MLDSA44-ED25519 host key by default (closes: #1142934).
   * Remove Lintian overrides that now only apply to openssh-gssapi.
   * Remove copyright entry that now only applies to openssh-gssapi.
   * Skip purging if openssh-{client,server}-gssapi is installed (closes:
     #1148080).
Checksums-Sha1:
 c9481cb3781f8b621d33481e5e1356876c3050e1 4001680 openssh-client-dbgsym_10.6p1-1_powerpc.deb
 865cc1fbdfa2f4bdccada3f9aa42246f26a7f527 337284 openssh-client-udeb_10.6p1-1_powerpc.udeb
 d3bba5ad64f196b63602625d83a00a8d3bc65aa8 673800 openssh-client_10.6p1-1_powerpc.deb
 6b51b7d5fa59c755b746713bb1eeace0064c335f 1788968 openssh-common-dbgsym_10.6p1-1_powerpc.deb
 e5e9584c8c176bb39cd152dbaa6c033b39da69f5 490916 openssh-common_10.6p1-1_powerpc.deb
 c52486cddf3d7380bfe13f475e907ea3256164d6 3031424 openssh-server-dbgsym_10.6p1-1_powerpc.deb
 7cff1a8b67d160e471e9fc7dd63ff14010d914f9 457560 openssh-server-udeb_10.6p1-1_powerpc.udeb
 bffffccd1adc518fd7be14387187dde66963b5d6 570240 openssh-server_10.6p1-1_powerpc.deb
 1791d62a428be9965e00c2f8926cf80b33d6586d 181556 openssh-sftp-server-dbgsym_10.6p1-1_powerpc.deb
 8154d22afcb0fff8a009289d43e045931fb15f6f 71004 openssh-sftp-server_10.6p1-1_powerpc.deb
 1654a45fa442fcf546eeb49375cd1d2d1eef7075 5402176 openssh-tests-dbgsym_10.6p1-1_powerpc.deb
 c50df6a3909cd43fb8bc15aaba2950073508bcbc 1233556 openssh-tests_10.6p1-1_powerpc.deb
 57acb76278265031baea70a781d80075e0730b13 18439 openssh_10.6p1-1_powerpc.buildinfo
 c1ce44c380a6b90f09ebce8339828873ff3e8b15 17112 ssh-askpass-gnome-dbgsym_10.6p1-1_powerpc.deb
 71d61ebab3233e7824be1e0cee3e2ffaf9a0027a 14432 ssh-askpass-gnome_10.6p1-1_powerpc.deb
 b34ec9cc7c4919ca39818d895e436b4a2881ac70 1192 ssh_10.6p1-1_powerpc.deb
Checksums-Sha256:
 3f86e46b19b0b12140e2add93f317b598c3b78c1c1b0f157e6c9f72e58624cdd 4001680 openssh-client-dbgsym_10.6p1-1_powerpc.deb
 71fd4a8d4d27dfbee9a50ac9ea9df387d4acbb99a5704a1700c70bd68f8e1781 337284 openssh-client-udeb_10.6p1-1_powerpc.udeb
 ec5c4472e672368ba41cc877acca5991e670cf0ecef6178729b0239e9ed02ca6 673800 openssh-client_10.6p1-1_powerpc.deb
 fb64c4b5f4d9218020fa7330a090768a06e050cef9b0918cc8ee650353d271e3 1788968 openssh-common-dbgsym_10.6p1-1_powerpc.deb
 4edef33fc8d5dde0e455100fd0e4f64dbb39b115ab92133571f43e3605d5993c 490916 openssh-common_10.6p1-1_powerpc.deb
 cdffb8dc54e5fab0d8edaa44864c402ead40131b6676b36767ee8d02b84e2ad9 3031424 openssh-server-dbgsym_10.6p1-1_powerpc.deb
 8df1fb9f80dfcbbb85eae814dde20db0028d176380b2b699c7aec594081a65ff 457560 openssh-server-udeb_10.6p1-1_powerpc.udeb
 f3c959c38239ffcd65f48060f26f7cc217e4419da6e6d4c58bb93df28f579835 570240 openssh-server_10.6p1-1_powerpc.deb
 fc2b1bc5281562a3eabdaae091db93430941ceb85b84abad7f378a4d9cf8e723 181556 openssh-sftp-server-dbgsym_10.6p1-1_powerpc.deb
 60616c33919c43efcee753448fcadf47a0c509b6f7c5d8778e75c9dd68c20627 71004 openssh-sftp-server_10.6p1-1_powerpc.deb
 06a15e3846fb97043b2a627cf7a804ece13898b553f27bb5a7220d2b582b68db 5402176 openssh-tests-dbgsym_10.6p1-1_powerpc.deb
 d038a288685a98fefd848cfc24ca46711f104b699d8aa7356ea18b221dc63d2b 1233556 openssh-tests_10.6p1-1_powerpc.deb
 e48dfe9028438e10df0f932acf54ec6adc8692876ed02cdc0e064a3e830f6524 18439 openssh_10.6p1-1_powerpc.buildinfo
 fd39a4a9a432f02ff519f86327e37af5bde05c240b6e52e8272c56fb5f6d00ea 17112 ssh-askpass-gnome-dbgsym_10.6p1-1_powerpc.deb
 03cd42be58595dea53e66366a9c17415f8ff72d88648e261409e723718b207e8 14432 ssh-askpass-gnome_10.6p1-1_powerpc.deb
 9edd60e7cdd070b4530cc4fbddf43f9a11d956f91dcea0615e4429ca79bc11ab 1192 ssh_10.6p1-1_powerpc.deb
Files:
 a7dadedac82dddd13d5512181bc46a79 4001680 debug optional openssh-client-dbgsym_10.6p1-1_powerpc.deb
 3e86608c0b7d6fe3281b5745ed546e18 337284 debian-installer optional openssh-client-udeb_10.6p1-1_powerpc.udeb
 62860407073f12bae77f58c1cdc56de3 673800 net standard openssh-client_10.6p1-1_powerpc.deb
 274accc3a1ee646b0a53453ec374582e 1788968 debug optional openssh-common-dbgsym_10.6p1-1_powerpc.deb
 86da5ca5af09b1bcb201956a35cad869 490916 net standard openssh-common_10.6p1-1_powerpc.deb
 10657dc19dd1da2a8dde4e3f12d471ac 3031424 debug optional openssh-server-dbgsym_10.6p1-1_powerpc.deb
 9e3fe10263c2cf8051d0a9ae32a450c4 457560 debian-installer optional openssh-server-udeb_10.6p1-1_powerpc.udeb
 81e515cb3e6cda43ae6687a553710b6d 570240 net optional openssh-server_10.6p1-1_powerpc.deb
 6149658d45414745a74cbc14dccd64f0 181556 debug optional openssh-sftp-server-dbgsym_10.6p1-1_powerpc.deb
 60ebf7b69e984c84ef9d782db4f37bbe 71004 net optional openssh-sftp-server_10.6p1-1_powerpc.deb
 2f91b37a5fb04efb58608822f752291b 5402176 debug optional openssh-tests-dbgsym_10.6p1-1_powerpc.deb
 6c26b74b40da2d0a18036aa88d8cb583 1233556 net optional openssh-tests_10.6p1-1_powerpc.deb
 367a396fd1de5263896dd177df0d0976 18439 net standard openssh_10.6p1-1_powerpc.buildinfo
 4bfc61768e048612d847bb463ea1078b 17112 debug optional ssh-askpass-gnome-dbgsym_10.6p1-1_powerpc.deb
 3b233827475aca08727336f93d920f9e 14432 gnome optional ssh-askpass-gnome_10.6p1-1_powerpc.deb
 bb74cec2bd743c5e87f957cd456dc8ab 1192 net optional ssh_10.6p1-1_powerpc.deb
Signed-By: Debian buildd autosigning key for debian-project-be-2 <buildd_ppc64-debian-project-be-2@buildd.debian.org>

