Security Advisory

CVE-2025-1403

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-02-21 16:55:03
Last updated 2025-08-26 19:48:05
Assigner ibm
State PUBLISHED

Description

Qiskit SDK 0.45.0 through 1.2.4 could allow a remote attacker to cause a denial of service using a maliciously crafted QPY file containing a malformed symengine serialization stream which can cause a segfault within the symengine library.