diff options
| author | Soumya Sambu <soumya.sambu@windriver.com> | 2025-05-05 11:47:11 +0000 |
|---|---|---|
| committer | Steve Sakoman <steve@sakoman.com> | 2025-05-08 13:37:29 -0700 |
| commit | 38a5779745ec3a75cb573c802139b7fcb853f21d (patch) | |
| tree | 7afdf4ce0011309aabf6e537a88be57e163635b9 /meta/recipes-devtools/python/python3-subunit_1.4.4.bb | |
| parent | 2e1dd3c3d687ea2c3242e5113dcc3fca59a28e29 (diff) | |
| download | poky-38a5779745ec3a75cb573c802139b7fcb853f21d.tar.gz | |
elfutils: Fix CVE-2025-1371
A vulnerability has been found in GNU elfutils 0.192 and classified as problematic.
This vulnerability affects the function handle_dynamic_symtab of the file readelf.c
of the component eu-read. The manipulation leads to null pointer dereference.
Attacking locally is a requirement. The exploit has been disclosed to the public and
may be used. The patch is identified as b38e562a4c907e08171c76b8b2def8464d5a104a. It
is recommended to apply a patch to fix this issue.
References:
https://nvd.nist.gov/vuln/detail/CVE-2025-1371
https://ubuntu.com/security/CVE-2025-1371
Upstream patch:
https://sourceware.org/cgit/elfutils/commit/?id=b38e562a4c907e08171c76b8b2def8464d5a104a
(From OE-Core rev: 11c44bde4f3d9e63506ece2f9b27114914aacc4b)
Signed-off-by: Soumya Sambu <soumya.sambu@windriver.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
Diffstat (limited to 'meta/recipes-devtools/python/python3-subunit_1.4.4.bb')
0 files changed, 0 insertions, 0 deletions
