Update to GeographicLib-2.5.2, fixes CVE-2025-60751.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-65e3f233bf 2025-11-07 01:27:09.764780+00:00 -------------------------------------------------------------------------------- Name : GeographicLib Product : Fedora 42 Version : 2.5.2 Release : 1.fc42 URL : https://github.com/geographiclib/geographiclib Summary : Library for geographic coordinate transformations Description : GeographicLib is a small set of C++ classes for performing conversions between geographic, UTM, UPS, MGRS, geocentric, and local Cartesian coordinates, for gravity (e.g., EGM2008), geoid height and geomagnetic field (e.g., WMM2010) calculations, and for solving geodesic problems. The emphasis is on returning accurate results with errors close to round-off (about 5\u201315 nanometers). New accurate algorithms for Geodesics on an ellipsoid of revolution and Transverse Mercator projection have been developed for this library. The functionality of the library can be accessed from user code, from the Utility programs provided, or via the Implementations in other languages. -------------------------------------------------------------------------------- Update Information: Update to GeographicLib-2.5.2, fixes CVE-2025-60751. -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 29 2025 Sandro Mani - 2.5.2-1 - Update to 2.5.2 * Wed Jul 23 2025 Fedora Release Engineering - 2.5-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild * Sun Jul 20 2025 Sandro Mani - 2.5-5 - Fix bad requires * Sat Jul 19 2025 Python Maint - 2.5-4 - Rebuilt for Python 3.14 * Fri Jul 18 2025 Sandro Mani - 2.5-3 - Drop python subpackages, they now live in python-geographiclib * Mon Jun 2 2025 Python Maint - 2.5-2 - Rebuilt for Python 3.14 -------------------------------------------------------------------------------- References: [ 1 ] Bug#2405440 - CVE-2025-60751 GeographicLib: GeographicLib buffer overflow [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2405440 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-65e3f233bf' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- . Update to GeographicLib 2.5.2 resolves a critical buffer overflow issue identified in CVE-2025-60751 for Fedora 42.. GeographicLib, Fedora 42, security advisory, buffer overflow, CVE-2025-60751. . Severity: Critical. LinuxSecurity.com Team
Update to GeographicLib-2.5.2, fixes CVE-2025-60751.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-e5eb1e35e2 2025-11-07 00:54:39.974639+00:00 -------------------------------------------------------------------------------- Name : GeographicLib Product : Fedora 43 Version : 2.5.2 Release : 1.fc43 URL : https://github.com/geographiclib/geographiclib Summary : Library for geographic coordinate transformations Description : GeographicLib is a small set of C++ classes for performing conversions between geographic, UTM, UPS, MGRS, geocentric, and local Cartesian coordinates, for gravity (e.g., EGM2008), geoid height and geomagnetic field (e.g., WMM2010) calculations, and for solving geodesic problems. The emphasis is on returning accurate results with errors close to round-off (about 5\u201315 nanometers). New accurate algorithms for Geodesics on an ellipsoid of revolution and Transverse Mercator projection have been developed for this library. The functionality of the library can be accessed from user code, from the Utility programs provided, or via the Implementations in other languages. -------------------------------------------------------------------------------- Update Information: Update to GeographicLib-2.5.2, fixes CVE-2025-60751. -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 29 2025 Sandro Mani - 2.5.2-1 - Update to 2.5.2 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2405440 - CVE-2025-60751 GeographicLib: GeographicLib buffer overflow [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2405440 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-e5eb1e35e2' at the command line. For more information, refer to the dnf documentationavailable at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- . GeographicLib updated in Fedora 43 to fix a critical buffer overflow issue. Upgrade to enhance system security.. GeographicLib update Fedora GeographicLib buffer overflow patch. . Severity: Important. LinuxSecurity.com Team
Geographiclib is a C++ library to solve geodesic problems. A stack buffer overflow occurs when the GeoConvert tool receives a crafted input. The overflow occurs because the program does not properly validate an internal index, allowing an out-of-bounds write on the stack. An attacker can exploit this . ------------------------------------------------------------------------- Debian LTS Advisory DLA-4361-1
Get the latest Linux and open source security news straight to your inbox.