alpine · CVE-2025-2925

Quick triage

Priority: not assigned Published: Updated:

View at Official alpine advisory, NVD, CVE.org · CVE detail

Freshness: no update timestamp found; verify against the upstream OS advisory manually.

Tracker summary

CVE-2025-2925: 1 source package rows (hdf5); 7 state rows across 3 repos (3.22-community, 3.23-community, edge-community); fixed 0, open 7.

Description:

A vulnerability has been found in HDF5 up to 1.14.6 and classified as problematic. This vulnerability affects the function H5MM_realloc of the file src/H5MM.c. The manipulation of the argument mem leads to double free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.

cvelogic Threat Intelligence