HomeFreeBSD

security/openssh-portable: Update to 9.9p2

Description

security/openssh-portable: Update to 9.9p2

Changes: https://www.openssh.com/releasenotes.html
Security:

  • Fix CVE-2025-26465 - ssh(1) in OpenSSH versions 6.8p1 to 9.9p1 (inclusive) contained a logic error that allowed an on-path attacker (a.k.a MITM) to impersonate any server when the VerifyHostKeyDNS option is enabled. This option is off by default.
  • Fix CVE-2025-26466 - sshd(8) in OpenSSH versions 9.5p1 to 9.9p1 (inclusive) is vulnerable to a memory/CPU denial-of-service related to the handling of SSH2_MSG_PING packets. This condition may be

(cherry picked from commit 1896ee6874cd44b6c8d08feb40b4b8f445ae9184)

Details

Provenance
bdreweryAuthored on Wed, Feb 19, 4:01 PM
Parents
R11:67c6153167be: x11-wm/gamescope: drop maintainership
Branches
Unknown
Tags
Unknown