Skip to content

[Manual Cherry-Pick] [AutoPR- Security] Patch cmake for CVE-2025-14524, CVE-2025-10966 [ME…#16170

Open
Kanishk-Bansal wants to merge 1 commit intofasttrack/2.0from
kanbansal/cmake/fp/15557
Open

[Manual Cherry-Pick] [AutoPR- Security] Patch cmake for CVE-2025-14524, CVE-2025-10966 [ME…#16170
Kanishk-Bansal wants to merge 1 commit intofasttrack/2.0from
kanbansal/cmake/fp/15557

Conversation

@Kanishk-Bansal
Copy link
Contributor

@Kanishk-Bansal Kanishk-Bansal commented Mar 11, 2026

Manual Cherry Pick of #15557

…DIUM] (#15557)

Co-authored-by: BinduSri-6522866 <v-badabala@microsoft.com>
@Kanishk-Bansal Kanishk-Bansal requested a review from a team as a code owner March 11, 2026 17:11
@microsoft-github-policy-service microsoft-github-policy-service bot added Packaging fasttrack/2.0 PRs Destined for Azure Linux 2.0 labels Mar 11, 2026
Patch27: CVE-2025-5917.patch
Patch28: CVE-2025-5918.patch
Patch29: CVE-2025-14017.patch
Patch30: CVE-2025-10966.patch
Copy link
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm not sure we need this change. There is a buildrequires against the system curl. Can we confirm this is really needed?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

fasttrack/2.0 PRs Destined for Azure Linux 2.0 Packaging

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants