diff options
author | Changqing Li <changqing.li@windriver.com> | 2025-07-07 17:07:28 +0800 |
---|---|---|
committer | Steve Sakoman <steve@sakoman.com> | 2025-07-11 08:11:53 -0700 |
commit | 851774c7572841d9ced5450f4e98bd2b4437e5d2 (patch) | |
tree | ccc244ac0a588f8eacb21e136680be8f7aaebe34 /documentation/dev-manual/python-development-shell.rst | |
parent | 36526677dbf1a18f20da8545ca5a6c0408c962ba (diff) | |
download | poky-851774c7572841d9ced5450f4e98bd2b4437e5d2.tar.gz |
icu: fix CVE-2025-5222
CVE-2025-5222:
A stack buffer overflow was found in Internationl components for unicode
(ICU ). While running the genrb binary, the 'subtag' struct overflowed
at the SRBRoot::addTag function. This issue may lead to memory
corruption and local arbitrary code execution.
Refer:
https://nvd.nist.gov/vuln/detail/CVE-2025-5222
https://unicode-org.atlassian.net/browse/ICU-22957
https://github.com/unicode-org/icu/commit/2c667e31cfd0b6bb1923627a932fd3453a5bac77
(From OE-Core rev: a35ff17a0985389842c89e35f264f1d9f2b6bbae)
Signed-off-by: Changqing Li <changqing.li@windriver.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
Diffstat (limited to 'documentation/dev-manual/python-development-shell.rst')
0 files changed, 0 insertions, 0 deletions