Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

Ubuntu 23 gnuplot Essential LibBoost Buffer Overflow Patch 2023-ab34defc78

fedora
Calendar Grey March 27, 2026
Dist Fedora Esm H88
Critical advisory for Fedora 42 addresses KissFFT integer overflow issue with a patch to enhance security through a fix.
Add patch to fix integer overflow on 32-bit in KissFFT (CVE-2025-34297)

Summary

VTK is an open-source software system for image processing, 3D

graphics, volume rendering and visualization. VTK includes many

advanced algorithms (e.g., surface reconstruction, implicit modeling,

decimation) and rendering techniques (e.g., hardware-accelerated

volume rendering, LOD control).

NOTE: The version in this package has NOT been compiled with MPI support.

Install the vtk-mpich package to get a version compiled with mpich.

Update Information:

Add patch to fix integer overflow on 32-bit in KissFFT (CVE-2025-34297)

Change Log

* Tue Mar 17 2026 Orion Poplawski - 9.2.6-38 - Add patch to fix integer overflow on 32-bit in KissFFT (CVE-2025-34297) * Sun Mar 2 2025 Christoph Junghans - 9.2.6-37 - Remove obsolete FindHDF5.cmake

References


[ 1 ] Bug #2418144 - CVE-2025-34297 vtk: KissFFT Integer Overflow Heap Buffer Overflow via kiss_fft_alloc [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2418144 [ 2 ] Bug #2418147 - CVE-2025-34297 vtk: KissFFT Integer Overflow Heap Buffer Overflow via kiss_fft_alloc [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2418147

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-ff768f8e37' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: vtk
Product: Fedora 42
Version: 9.2.6
Release: 38.fc42
Summary: The Visualization Toolkit - A high level 3D visualization library

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here