HomeDefectsLIN1025-3463
Fixed

LIN1025-3463 : Security Advisory - cmake - CVE-2025-9301

Created: Aug 23, 2025    Updated: Aug 31, 2026
Resolved Date: Aug 31, 2026
Found In Version: 10.25.33.1
Fix Version: 10.25.33.11
Severity: Standard
Applicable for: Wind River Linux LTS 25
Component/s: Userspace

Description

A vulnerability was determined in cmake 4.1.20250725-gb5cce23. This affects the function cmForEachFunctionBlocker::ReplayItems of the file cmForEachCommand.cxx. This manipulation causes reachable assertion. The attack needs to be launched locally. The exploit has been publicly disclosed and may be utilized. Patch name: 37e27f71bc356d880c908040cd0cb68fa2c371b8. It is suggested to install a patch to address this issue.

CVEs