summaryrefslogtreecommitdiffstats
path: root/meta-python/recipes-devtools/python/python3-cryptography
diff options
context:
space:
mode:
authorDivya Chellam <divya.chellam@windriver.com>2025-09-11 16:07:04 +0530
committerAnuj Mittal <anuj.mittal@intel.com>2025-09-23 09:57:53 +0800
commit71b601e3d721fd8edc0e98b627331e14f8ff7a23 (patch)
tree7d88d1aa230f04e7f6a01f314090771d67c4af9f /meta-python/recipes-devtools/python/python3-cryptography
parentb9fb6556a3c8a3e477dce334205b658cb79ad501 (diff)
downloadmeta-openembedded-71b601e3d721fd8edc0e98b627331e14f8ff7a23.tar.gz
libssh: fix CVE-2025-4878
A vulnerability was found in libssh, where an uninitialized variable exists under certain conditions in the privatekey_from_file() function. This flaw can be triggered if the file specified by the filename doesn't exist and may lead to possible signing failures or heap corruption. Reference: https://security-tracker.debian.org/tracker/CVE-2025-4878 Upstream-patches: https://git.libssh.org/projects/libssh.git/commit/?id=697650caa97eaf7623924c75f9fcfec6dd423cd1 https://git.libssh.org/projects/libssh.git/commit/?id=b35ee876adc92a208d47194772e99f9c71e0bedb Signed-off-by: Divya Chellam <divya.chellam@windriver.com> Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
Diffstat (limited to 'meta-python/recipes-devtools/python/python3-cryptography')
0 files changed, 0 insertions, 0 deletions