CVE-2025-55315 for ASP.NET / Kestrel
Problem reported by Nathan - Today at 2:38 AM
Submitted
A friendly reminder that CVE-2025-55315 impacts Kestrel so you may want to start patching your Smartermail server sooner rather than later.

I contacted support yesterday and they advised yesterday's release should include the patched Kestrel for Linux. The release notes do not confirm this but I hope they did roll it in.
Matt Petty Replied
Employee Post
We did we moved our build servers to dotnet 9.0.10 mid week and all builds windows + linux, and docker (which is built off the latest net9.0 docker image when its made) are on this version, so our release yesterday includes this.
Matt Petty Senior Software Developer SmarterTools Inc. www.smartertools.com
Nathan Replied
Thank you for confirming

Reply to Thread

Enter the verification text