Buffer Overflow vulnerability in gdal 3.10.2 allows a local attacker to cause a denial of service via the OGRSpatialReference::Release function. NOTE: the Supplier indicates that the report is invalid and could not be reproduced.
Advisories
Source ID Title
EUVD EUVD EUVD-2025-10311 Buffer Overflow vulnerability in gdal 3.10.2 allows a local attacker to cause a denial of service via the OGRSpatialReference::Release function. NOTE: the Supplier indicates that the report is invalid and could not be reproduced.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 23 Jul 2025 15:00:00 +0000

Type Values Removed Values Added
Description Buffer Overflow vulnerability in gdal 3.10.2 allows a local attacker to cause a denial of service via the OGRSpatialReference::Release function. Buffer Overflow vulnerability in gdal 3.10.2 allows a local attacker to cause a denial of service via the OGRSpatialReference::Release function. NOTE: the Supplier indicates that the report is invalid and could not be reproduced.
References

Tue, 15 Apr 2025 16:45:00 +0000

Type Values Removed Values Added
First Time appeared Osgeo
Osgeo gdal
CPEs cpe:2.3:a:osgeo:gdal:3.10.2:-:*:*:*:*:*:*
Vendors & Products Osgeo
Osgeo gdal

Tue, 08 Apr 2025 14:15:00 +0000

Type Values Removed Values Added
Title gdal: Buffer Overflow in GDAL
Weaknesses CWE-120
References
Metrics threat_severity

None

cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}

threat_severity

Moderate


Mon, 07 Apr 2025 19:45:00 +0000

Type Values Removed Values Added
Description Buffer Overflow vulnerability in gdal 3.10.2 allows a local attacker to cause a denial of service via the OGRSpatialReference::Release function.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-07-24T14:34:48.120Z

Reserved: 2025-03-11T00:00:00.000Z

Link: CVE-2025-29480

cve-icon Vulnrichment

Updated: 2025-04-08T13:34:46.496Z

cve-icon NVD

Status : Modified

Published: 2025-04-07T20:15:20.607

Modified: 2025-07-23T15:15:30.723

Link: CVE-2025-29480

cve-icon Redhat

Severity : Moderate

Publid Date: 2025-04-07T00:00:00Z

Links: CVE-2025-29480 - Bugzilla

cve-icon OpenCVE Enrichment

No data.