Source: sslh
Version: 2.1.4-1
Severity: important
Tags: security upstream
Forwarded: https://github.com/yrutschle/sslh/pull/494
X-Debbugs-Cc: [email protected], Debian Security Team <[email protected]>
Hi,
The following vulnerability was published for sslh.
CVE-2025-52936[0]:
| Improper Link Resolution Before File Access ('Link Following')
| vulnerability in yrutschle sslh.This issue affects sslh: before
| 2.2.2.
If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.
For further information see:
[0] https://security-tracker.debian.org/tracker/CVE-2025-52936
https://www.cve.org/CVERecord?id=CVE-2025-52936
[1] https://github.com/yrutschle/sslh/pull/494
[2]
https://github.com/yrutschle/sslh/commit/0fe9bd5a956a123342ff12352b25bff8025dac69
Please adjust the affected versions in the BTS as needed.
Regards,
Salvatore