CVE-2025-29476

NameCVE-2025-29476
DescriptionBuffer Overflow vulnerability in compress_chunk_fuzzer with oss-fuzz on commit 16450518afddcb3139de627157208e49bfef6987 in c-blosc2 v.2.17.0 and before.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs1102152

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
c-blosc2 (PTS)sid, trixie2.17.1+ds-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
c-blosc2source(unstable)2.17.1+ds-11102152

Notes

https://github.com/Blosc/c-blosc2/issues/656
https://github.com/Blosc/c-blosc2/pull/658

Search for package or bug name: Reporting problems