CVE-2025-29480: OSGeo Gdal

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

Buffer Overflow vulnerability in gdal 3.10.2 allows a local attacker to cause a denial of service via the OGRSpatialReference::Release function. NOTE: the Supplier indicates that the report is invalid and could not be reproduced.

Affected products

  • OSGeo Gdal: version 3.10.2 only

Published 2025-04-07. Last modified 2026-06-17.