Source: libssh Version: 0.11.1-2 Severity: important Tags: security upstream X-Debbugs-Cc: car...@debian.org, Debian Security Team <t...@security.debian.org>
Hi, The following vulnerabilities were published for libssh. CVE-2025-4877[0], CVE-2025-4878[1], CVE-2025-5318[2], CVE-2025-5351[3], CVE-2025-5372[4], CVE-2025-5449[5] and CVE-2025-5987[6]. The security-tracker already links as well to additional information from upstream, still some CVEs are not yet published officially on MITRE. If you fix the vulnerabilities please also make sure to include the CVE (Common Vulnerabilities & Exposures) ids in your changelog entry. For further information see: [0] https://security-tracker.debian.org/tracker/CVE-2025-4877 https://www.cve.org/CVERecord?id=CVE-2025-4877 [1] https://security-tracker.debian.org/tracker/CVE-2025-4878 https://www.cve.org/CVERecord?id=CVE-2025-4878 [2] https://security-tracker.debian.org/tracker/CVE-2025-5318 https://www.cve.org/CVERecord?id=CVE-2025-5318 [3] https://security-tracker.debian.org/tracker/CVE-2025-5351 https://www.cve.org/CVERecord?id=CVE-2025-5351 [4] https://security-tracker.debian.org/tracker/CVE-2025-5372 https://www.cve.org/CVERecord?id=CVE-2025-5372 [5] https://security-tracker.debian.org/tracker/CVE-2025-5449 https://www.cve.org/CVERecord?id=CVE-2025-5449 [6] https://security-tracker.debian.org/tracker/CVE-2025-5987 https://www.cve.org/CVERecord?id=CVE-2025-5987 Regards, Salvatore