[CLSA-2026:1789661255] Fix CVE(s): CVE-2025-14933, CVE-2025-14934, CVE-2025-14935, CVE-2025-14936
Type:
security
Severity:
Important
Release date:
2026-09-17 16:07:49 UTC
Description:
* SECURITY UPDATE: integer overflow in new_x_NC_var() and unbounded ndims in v1h_get_NC_var() (CVE-2025-14933) * SECURITY UPDATE: stack buffer overflow in NC3_inq_var() (CVE-2025-14934) * SECURITY UPDATE: heap buffer overflow in NC3_inq_dim() (CVE-2025-14935) * SECURITY UPDATE: stack buffer overflow in NC3_inq_attname() (CVE-2025-14936)
Updated packages:
  • libnetcdf-dev_4.7.4-1+tuxcare.els1_amd64.deb
    sha:26084fdd48b16d0efcc19f7756e0738f7741a85d
  • libnetcdf18_4.7.4-1+tuxcare.els1_amd64.deb
    sha:69e7ade68f0aef72635595e1b0f5616b7ca4eae2
  • netcdf-bin_4.7.4-1+tuxcare.els1_amd64.deb
    sha:8d8d6145136edda4425b0d74635e7f18a9a3a367
  • netcdf-doc_4.7.4-1+tuxcare.els1_all.deb
    sha:b597dac6db97396c121efc58c89aa54dacb4df53
  • libnetcdf-dev_4.7.4-1+tuxcare.els1_arm64.deb
    sha:b1ac03fd8a57300a174b7df3d0427aa91ebef46d
  • libnetcdf18_4.7.4-1+tuxcare.els1_arm64.deb
    sha:ed2a32e45a9979ebb94f390adc95db0f875de79e
  • netcdf-bin_4.7.4-1+tuxcare.els1_arm64.deb
    sha:0880a65b3d17e1bd29588d2aca79e908786a1575
  • libnetcdf-dev_4.7.4-1+tuxcare.els1_armel.deb
    sha:8b958f5f0b8ce8e296c2da23dde435ad0384958e
  • libnetcdf18_4.7.4-1+tuxcare.els1_armel.deb
    sha:e1f486989f26b4dfcb01ce86d88316b16a1ee8c3
  • netcdf-bin_4.7.4-1+tuxcare.els1_armel.deb
    sha:36ed6efa95465eacb518fff4ed700ce27bcf1041
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.