chiprook
← Security
SecurityOctober 10, 2026, 02:40

CVE-2026-67279: RouterOS SSH fails to resume auth after rekey

CVE-2026-67279 is a state-machine flaw in MikroTik RouterOS SSH: a rekey during authentication left the server in the channel phase without resuming login. Fixed in RouterOS 7.25beta3, 7.24.2, 7.23.4 and 6.49.21; chained with an argument-injection bug it yields full admin access.

CVE-2026-67279: RouterOS SSH fails to resume auth after rekey
#MikroTik#RouterOS
Read next
Security

MikroTik patches three RouterOS flaws, including SSH auth bypass

Security

Exposed Router Management: 8.09 Million RouterOS Assets and the 9,560 That Still Answer on SSH

Security

Patching Guide: Closing the CVE-2026-67276 SSH Authentication Bypass on MikroTik Routers

Security

CISA warns of critical pre-auth RCE flaw in MikroTik RouterOS