yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2025-0633
Component Overview
Vulnerability Overview
Name
CVE-2025-0633
Source
NVD (
link
)
Debian (
link
)
Description
Heap-based Buffer Overflow vulnerability in iniparser_dumpsection_ini() in iniparser allows attacker to read out of bound memory
CWEs
CWE-122
Published Date
Feb 19, 2025
Updated Date
Jun 17, 2026
Workaround
-
Advisories
Analysis
#
Affected Component
Analysis
iniparser
Patched
Vulnerability Ratings
#
5.1
CVSSv4
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
iniparser
openwrt
master
4.2.6-r1
Not Affected
iniparser
openwrt
openwrt-25.12
4.2.6-r1
Not Affected
iniparser
yocto
master
4.2.6
Not Affected
iniparser
yocto
scarthgap
4.1+git
Patched
Resolved with patches
#
iniparser (yocto:kirkstone)
#
Title
Author
Resolve
1
Fix heap overflow in `iniparser_dumpsection_ini()`
Lars Möllendorf <lars@moellendorf.eu>
CVE-2025-0633
iniparser (yocto:scarthgap)
#
Title
Author
Resolve
1
Fix heap overflow in `iniparser_dumpsection_ini()`
Lars Möllendorf <lars@moellendorf.eu>
CVE-2025-0633