CVE-2025-29476: Buffer Overflow
Published Apr 4, 2025
·Updated
Buffer Overflow vulnerability in compresschunkfuzzer with oss-fuzz on commit 16450518afddcb3139de627157208e49bfef6987 in c-blosc2 v.2.17.0 and before.
Affected Software
1 affected component
blosc C-Blosc2<=2.17.0
Event History
Apr 4, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-29476?
CVE-2025-29476 is classified as a buffer overflow vulnerability, which can lead to serious security risks such as arbitrary code execution.
2
How do I fix CVE-2025-29476?
To fix CVE-2025-29476, update to c-blosc2 version 2.17.1 or later, where the vulnerability has been addressed.
3
What software is affected by CVE-2025-29476?
CVE-2025-29476 affects c-blosc2 version 2.17.0 and earlier versions.
4
What type of vulnerability is CVE-2025-29476?
CVE-2025-29476 is a buffer overflow vulnerability specifically found in the compress_chunk_fuzzer component.
5
Where can I find more information about CVE-2025-29476?
More information about CVE-2025-29476 can typically be found in the issue tracker on the official Blosc GitHub repository.