VDB
KO
MEDIUM 5.5

PYSEC-2022-43065

Details

GDAL 3.3.0 through 3.4.0 has a heap-based buffer overflow in PCIDSK::CPCIDSKFile::ReadFromFile (called from PCIDSK::CPCIDSKSegment::ReadFromFile and PCIDSK::CPCIDSKBinarySegment::CPCIDSKBinarySegment).

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI / gdal
Introduced in: 0 Fixed in: 1ca6a3e5168c200763fa46d8aa7e698d0b757e7e
Fix pip install --upgrade 'gdal>=1ca6a3e5168c200763fa46d8aa7e698d0b757e7e'

References