VyOS Networks Blog

Building an open source network OS for the people, together.

Filter by:
test down

Select Category

Filter by:
test down

Select Category


Category: VyOS Platform Blog | security

Daniil Baturin
Posted 1 Jul, 2024

CVE-2024-6387 (regreSSHion)

Hello, Community! Today Qualys's security team has disclosed a remotely exploitable vulnerability in OpenSSH server. It was assigned CVE-2024-6387 number and ni...
The post categories:
Daniil Baturin
Posted 13 May, 2024

VyOS 1.3.7 release

Hello, Community! VyOS 1.3.7/Equuleus maintenance release is available now. It fixes the buffer overflow vulnerability recently discovered in GNU libc (CVE-2024...
The post categories:
Daniil Baturin
Posted 2 Apr, 2024

xz backdoor, netfilter vulnerability, and a rolling release signing key leak

Hello, Community! There were quite a few security incidents lately that caught everyone's attention. Thankfully, none had any real impact on VyOS security, but ...
The post categories:
Daniil Baturin
Posted 14 Feb, 2024

VyOS 1.3.6 maintenance release

Hello, community! VyOS 1.3.6 LTS release is here — with many bug fixes and security updates. The most important are fixes for denial of service vulnerabilities ...
The post categories:
VyOS Developer Erkin Batu Altunbas
Posted 8 Feb, 2024

VyOS Project February 2024 Update

Hello, community! Curious what we've been up to in January? Our main focus is the final stabilization of the 1.4.0/Sagitta branch, and we will soon make the fir...
The post categories:
Daniil Baturin
Posted 15 Dec, 2023

VyOS 1.3.5 security release

Hello, Сommunity! VyOS 1.3.5/Equuleus LTS release is now officially available for download for customers and contributors. It includes fixes for two security vu...
The post categories:
Daniil Baturin
Posted 26 Sep, 2023

What's coming for OpenVPN in VyOS 1.4?

Hello, Community! OpenVPN is one of the oldest open-source VPN protocols and implementations. It took the world by storm in the early 2000s because it was a hug...
The post categories:
Daniil Baturin
Posted 27 Jul, 2023

Zenbleed and OpenSSH agent vulnerabilities and their impact on VyOS

Hello, Community! Recently, two severe vulnerabilities were discovered by security researchers. One of them is nicknamed Zenbleed (CVE-2023-20593) and affects a...
The post categories:
Daniil Baturin
Posted 3 Nov, 2022

Recent OpenSSL vulnerabilities do not affect any VyOS versions

Many people are concerned about recently announced OpenSSL vulnerabilities (CVE-2022-3786 and CVE-2022-3602). However, none of the VyOS versions ever released a...
The post categories:
Daniil Baturin
Posted 13 Sep, 2022

The future of VyOS image signature verification

There's one thing about our releases that we introduced quietly and neglected to explain to those unfamiliar with it: minisign signatures. Let's discuss why we ...
The post categories: