diff options
| author | Libo Chen <libo.chen.cn@windriver.com> | 2026-04-17 16:46:59 +0800 |
|---|---|---|
| committer | Anuj Mittal <anuj.mittal@oss.qualcomm.com> | 2026-04-29 10:14:29 +0530 |
| commit | c40989630d96db7fa1fb02f985457b3ae8bb1e21 (patch) | |
| tree | 84de17d0dbff6e0be7099c8358a2c3905dcb0f9e /meta-python/recipes-devtools/python | |
| parent | 4ab556ad1e14955ffd414b1716eaeaa5ca719cc1 (diff) | |
| download | meta-openembedded-c40989630d96db7fa1fb02f985457b3ae8bb1e21.tar.gz | |
hdf5: fix CVE-2025-6857
According to [1], A vulnerability has been found in HDF5 1.14.6 and
classified as problematic. Affected by this vulnerability is the function
H5G__node_cmp3 of the file src/H5Gnode.c. The manipulation leads to
stack-based buffer overflow. It is possible to launch the attack on the
local host. The exploit has been disclosed to the public and may be used.
Backport patch [2] from upstream to fix CVE-2025-6857
[1] https://nvd.nist.gov/vuln/detail/CVE-2025-6857
[2] https://github.com/HDFGroup/hdf5/commit/a8ceb1d95bb997f548c1129363dad53c18540096
Signed-off-by: Libo Chen <libo.chen.cn@windriver.com>
Signed-off-by: Anuj Mittal <anuj.mittal@oss.qualcomm.com>
Diffstat (limited to 'meta-python/recipes-devtools/python')
0 files changed, 0 insertions, 0 deletions
