CVE-2025-0509
04.02.2025, 20:15
A security issue was found in Sparkle before version 2.6.4. An attacker can replace an existing signed update with another payload, bypassing Sparkles (Ed)DSA signing checks.Enginsight
Vendor | Product | Version |
---|---|---|
sparkle-project | sparkle | 𝑥 < 2.6.4 |
netapp | hci_compute_node | - |
netapp | oncommand_workflow_automation | - |
netapp | hci_compute_node | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration