HomeFreeBSD

security/openssh-portable: Update to 9.9p2

Description

security/openssh-portable: Update to 9.9p2

Changes: https://www.openssh.com/releasenotes.html
Security:

  • Fix CVE-2025-26465 - ssh(1) in OpenSSH versions 6.8p1 to 9.9p1 (inclusive) contained a logic error that allowed an on-path attacker (a.k.a MITM) to impersonate any server when the VerifyHostKeyDNS option is enabled. This option is off by default.
  • Fix CVE-2025-26466 - sshd(8) in OpenSSH versions 9.5p1 to 9.9p1 (inclusive) is vulnerable to a memory/CPU denial-of-service related to the handling of SSH2_MSG_PING packets. This condition may be

Details

Provenance
bdreweryAuthored on Feb 19 2025, 4:01 PM
Parents
R11:54c4465a7778: x11-wm/gamescope: drop maintainership
Branches
Unknown
Tags
Unknown