

Tracked as CVE-2026-35414 (CVSS score of 8.1), the flaw is described as a mishandling of the authorized_keys principals option in certain scenarios involving certificate authorities (CA) that use comma characters.
According to Cyera, because of the bug, a comma in an SSH certificate principal name leads to OpenSSH access control bypass, allowing users to authenticate as root on a vulnerable server, as long as they have a valid certificate from a trusted CA.


Actually, you might be right, it was a better time. Perhaps we should just wait it out and see if a better time appears? 😄


No, it’s long past the time. I guess now is the next best time though.


Somehow Netenyahu returned


I thought that was a CVS receipt


deleted by creator


Insurance loss adjusters


It’s started, it’s just unevenly distributed among the poorer populations
I believe that any entity that witnessed me taking a dump would be truly terrified


Your cables break every 3 days


He’s planning out where to build the new McDonalds concession


I think we see a reform manifesto pledge to ‘bring back good, honest turkey twizzlers’ to school canteens 🙃


O’Biden? First the Irish claim Obama, now Biden 😄


In tonight’s headlines, man with red front door paints it blue. Contents behind front door remain unchanged. More at 6.
Yeah, because it stinks


More like the Conservative government spent in the region of £700m on the scheme, and sent only 4 people there.
The word ‘manhandled’ is doing a lot of war crimes in that headline