Bug 2412582
| Summary: | CVE-2025-58183 inspektor-gadget: Unbounded allocation when parsing GNU sparse map [fedora-43] | ||
|---|---|---|---|
| Product: | [Fedora] Fedora | Reporter: | Guilherme de Almeida Suckevicz <gsuckevi> |
| Component: | inspektor-gadget | Assignee: | Kyle Gospodnetich <me> |
| Status: | CLOSED CANTFIX | QA Contact: | |
| Severity: | medium | Docs Contact: | |
| Priority: | medium | ||
| Version: | 43 | CC: | flaniel+fedora, go-sig, me |
| Target Milestone: | --- | Keywords: | Security, SecurityTracking |
| Target Release: | --- | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | {"flaws": ["a7808f86-b817-420a-a332-bce863e785a3"]} | ||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2025-11-05 14:50:00 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | |||
| Bug Blocks: | 2407258 | ||
|
Description
Guilherme de Almeida Suckevicz
2025-11-05 14:33:48 UTC
This is caused by golang version used to build ig, not by ig itself. Building with fixed golang will fix the issue. ig was built today to bump to v0.46.0. |