icon

We found results for “

CVE-2025-59339

Good to know:

icon

Date: September 17, 2025

The Bastion provides authentication, authorization, traceability and auditability for SSH accesses. Session-recording ttyrec files, may be handled by the provided osh-encrypt-rsync script that is a helper to rotate, encrypt, sign, copy, and optionally move them to a remote storage periodically, if configured to. When running, the script properly rotates and encrypts the files using the provided GPG key(s), but silently fails to sign them, even if asked to.

Severity Score

Severity Score

Weakness Type (CWE)

Missing Cryptographic Step

CWE-325

Top Fix

icon

Upgrade Version

Upgrade to version https://github.com/ovh/the-bastion.git - v3.22.00

Learn More

CVSS v3.1

Base Score:
Attack Vector (AV): LOCAL
Attack Complexity (AC): LOW
Privileges Required (PR): HIGH
User Interaction (UI): NONE
Scope (S): UNCHANGED
Confidentiality (C): NONE
Integrity (I): HIGH
Availability (A): NONE

Do you need more information?

Contact Us