summaryrefslogtreecommitdiffstats
path: root/meta-python
diff options
context:
space:
mode:
authorDivya Chellam <divya.chellam@windriver.com>2025-10-24 17:56:23 +0530
committerGyorgy Sarvari <skandigraun@gmail.com>2025-10-27 11:17:59 +0100
commit6306bae883db86f1bb1f79a8f672f00bc114a9be (patch)
treeeedeb8d781ee47995e5188e0e373bf773da6a92f /meta-python
parent63bb7a478e89d6b12fee9fd00219abebfed64cf4 (diff)
downloadmeta-openembedded-6306bae883db86f1bb1f79a8f672f00bc114a9be.tar.gz
jq: fix CVE-2025-9403
A vulnerability was determined in jqlang jq up to 1.6. Impacted is the function run_jq_tests of the file jq_test.c of the component JSON Parser. Executing manipulation can lead to reachable assertion. The attack requires local access. The exploit has been publicly disclosed and may be utilized. Other versions might be affected as well. Reference: https://nvd.nist.gov/vuln/detail/CVE-2025-9403 Upstream-patch: https://github.com/jqlang/jq/commit/a4d9d540103ff9a262e304329c277ec89b27e5f9 Signed-off-by: Divya Chellam <divya.chellam@windriver.com> Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com>
Diffstat (limited to 'meta-python')
0 files changed, 0 insertions, 0 deletions