diff options
author | Divya Chellam <divya.chellam@windriver.com> | 2025-09-11 16:07:04 +0530 |
---|---|---|
committer | Anuj Mittal <anuj.mittal@intel.com> | 2025-09-23 09:57:53 +0800 |
commit | 71b601e3d721fd8edc0e98b627331e14f8ff7a23 (patch) | |
tree | 7d88d1aa230f04e7f6a01f314090771d67c4af9f /meta-python/recipes-devtools/python/python-pytest-helpers-namespace.inc | |
parent | b9fb6556a3c8a3e477dce334205b658cb79ad501 (diff) | |
download | meta-openembedded-71b601e3d721fd8edc0e98b627331e14f8ff7a23.tar.gz |
libssh: fix CVE-2025-4878
A vulnerability was found in libssh, where an uninitialized variable
exists under certain conditions in the privatekey_from_file() function.
This flaw can be triggered if the file specified by the filename doesn't
exist and may lead to possible signing failures or heap corruption.
Reference:
https://security-tracker.debian.org/tracker/CVE-2025-4878
Upstream-patches:
https://git.libssh.org/projects/libssh.git/commit/?id=697650caa97eaf7623924c75f9fcfec6dd423cd1
https://git.libssh.org/projects/libssh.git/commit/?id=b35ee876adc92a208d47194772e99f9c71e0bedb
Signed-off-by: Divya Chellam <divya.chellam@windriver.com>
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
Diffstat (limited to 'meta-python/recipes-devtools/python/python-pytest-helpers-namespace.inc')
0 files changed, 0 insertions, 0 deletions