Synopsis
Issued | 2025-08-14 |
Severity | Medium |
Updated Packages | kusanagi-nginx129 |
Affected Products | Security Edition |
Description
An update for kusanagi-nginx129 is now available.
Security fix(es):
- Security: processing of a specially crafted login/password when using the "none" authentication method in the ngx_mail_smtp_module might cause worker process memory disclosure to the authentication server (CVE-2025-53859).
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE information may not yet be available on those websites.