CNNVD-202601-2273 Information

CNNVD ID

CNNVD-202601-2273

CVE-2024-54855

  • CNNVD Published: 2026-01-13

Description (Chinese)

Vanilla OS 2 Core image是Vanilla OS开源的一个基础系统镜像。 Vanilla OS 2 Core image v1.1.0版本存在安全漏洞,该漏洞源于SSH服务使用静态密钥,可能导致中间人攻击。

Description (English)

Vanilla OS 2 Core image is a basic system mirror for Vanilla OS open source. There is a security loophole in version Vanilla OS 2 Core image v1.1.0, which stems from the use of static keys by SSH services, which may lead to attacks by intermediaries.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Vanilla OS

Published

2026-01-13

Last Modified

2026-02-24

References

http://fabricators.com http://vanilla.com https://github.com/Vanilla-OS/core-image/security/advisories/GHSA-67pc-hqr2-g34h https://access.redhat.com/security/cve/cve-2024-54855

Patch

https://github.com/Vanilla-OS/core-image/releases

Share on: