FEDORA-EPEL-2025-206aae91e0
Packages in this update:
libssh2-1.11.1-1.el10_1
Update description:
This update, to the current upstream libssh2 release, addresses a couple of security issues:
CVE-2023-6918 (missing checks for return values for digests)
CVE-2023-48795 (prefix truncation attack on Binary Packet Protocol (BPP) – “Terrapin”)
It also removes support for a number of legacy algorithms that were disabled by default or removed from OpenSSH in the 2015-2018 time period. See the RELEASE_NOTES file for full details.
In addition, there are a large number of bug fixes and enhancements, which again are described in the RELEASE_NOTES file.
More Stories
redis-7.2.8-1.fc40
FEDORA-2025-290b0c6e2b Packages in this update: redis-7.2.8-1.fc40 Update description: Redis 7.2.8 Released Wed 23 Apr 2025 12:00:00 IST Update urgency: SECURITY:...
HNS-2025-10 – HN Security Advisory – Local privilege escalation in Zyxel uOS
Posted by Marco Ivaldi on Apr 23 Hi, Please find attached a security advisory that describes some vulnerabilities we discovered...
APPLE-SA-04-16-2025-4 visionOS 2.4.1
Posted by Apple Product Security via Fulldisclosure on Apr 23 APPLE-SA-04-16-2025-4 visionOS 2.4.1 visionOS 2.4.1 addresses the following issues. Information...
APPLE-SA-04-16-2025-3 tvOS 18.4.1
Posted by Apple Product Security via Fulldisclosure on Apr 23 APPLE-SA-04-16-2025-3 tvOS 18.4.1 tvOS 18.4.1 addresses the following issues. Information...
APPLE-SA-04-16-2025-2 macOS Sequoia 15.4.1
Posted by Apple Product Security via Fulldisclosure on Apr 23 APPLE-SA-04-16-2025-2 macOS Sequoia 15.4.1 macOS Sequoia 15.4.1 addresses the following...
APPLE-SA-04-16-2025-1 iOS 18.4.1 and iPadOS 18.4.1
Posted by Apple Product Security via Fulldisclosure on Apr 23 APPLE-SA-04-16-2025-1 iOS 18.4.1 and iPadOS 18.4.1 iOS 18.4.1 and iPadOS...