{"document":{"aggregate_severity":{"namespace":"https://www.suse.com/support/security/rating/","text":"moderate"},"category":"csaf_vex","csaf_version":"2.0","distribution":{"text":"Copyright 2024 SUSE LLC. All rights reserved.","tlp":{"label":"WHITE","url":"https://www.first.org/tlp/"}},"lang":"en","notes":[{"category":"summary","text":"SUSE CVE-2025-3017","title":"Title"},{"category":"description","text":"A vulnerability, which was classified as critical, has been found in TA-Lib up to 0.6.4. This issue affects the function setInputBuffer of the file src/tools/ta_regtest/ta_test_func/test_minmax.c of the component ta_regtest. The manipulation leads to out-of-bounds write. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. The identifier of the patch is 5879180e9070ec35d52948f2f57519713256a0f1. It is recommended to apply a patch to fix this issue.","title":"Description of the CVE"},{"category":"legal_disclaimer","text":"CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).","title":"Terms of use"}],"publisher":{"category":"vendor","contact_details":"https://www.suse.com/support/security/contact/","name":"SUSE Product Security Team","namespace":"https://www.suse.com/"},"references":[{"category":"external","summary":"CVE-2025-3017","url":"https://www.suse.com/security/cve/CVE-2025-3017"},{"category":"external","summary":"SUSE Security Ratings","url":"https://www.suse.com/support/security/rating/"},{"category":"external","summary":"SUSE Bug 1240429 for CVE-2025-3017","url":"https://bugzilla.suse.com/1240429"}],"title":"SUSE CVE CVE-2025-3017","tracking":{"current_release_date":"2025-12-19T00:51:09Z","generator":{"date":"2025-04-02T08:57:52Z","engine":{"name":"cve-database.git:bin/generate-csaf-vex.pl","version":"1"}},"id":"CVE-2025-3017","initial_release_date":"2025-04-02T08:57:52Z","revision_history":[{"date":"2025-04-02T08:57:52Z","number":"2","summary":"Current version"},{"date":"2025-04-03T01:07:20Z","number":"3","summary":"Current version"},{"date":"2025-07-07T23:36:59Z","number":"4","summary":"Current version"},{"date":"2025-12-17T00:51:45Z","number":"5","summary":"description changed"},{"date":"2025-12-19T00:51:09Z","number":"6","summary":"description changed"}],"status":"interim","version":"6"}}}