]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
openssh: fix CVE-2025-61985
authorArchana Polampalli <archana.polampalli@windriver.com>
Fri, 31 Oct 2025 05:28:04 +0000 (10:58 +0530)
committerSteve Sakoman <steve@sakoman.com>
Mon, 3 Nov 2025 17:18:14 +0000 (09:18 -0800)
commit5170bd2f8a63bcc310667a327ea2ab96c783c4f6
tree4a5b3d38c054dca31ed6851bc7a241e4f0591880
parentf5b980ade1e952a181cb51d60268942095627c0d
openssh: fix CVE-2025-61985

ssh in OpenSSH before 10.1 allows the '\0' character in an ssh:// URI, potentially
leading to code execution when a ProxyCommand is used.

Signed-off-by: Archana Polampalli <archana.polampalli@windriver.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-connectivity/openssh/openssh/CVE-2025-61985.patch [new file with mode: 0644]
meta/recipes-connectivity/openssh/openssh_8.9p1.bb