Home

Description

fabricators Ltd Vanilla OS 2 Core image v1.1.0 was discovered to contain static keys for the SSH service, allowing attackers to possibly execute a man-in-the-middle attack during connections with other hosts.

PUBLISHED Reserved 2024-12-06 | Published 2026-01-13 | Updated 2026-01-13 | Assigner mitre

References

vanilla.com

fabricators.com

github.com/...-image/security/advisories/GHSA-67pc-hqr2-g34h

cve.org (CVE-2024-54855)

nvd.nist.gov (CVE-2024-54855)

Download JSON