Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
9.8
CVE-2025-2000
- EPSS 0.29%
- Published 14.03.2025 13:15:40
- Last modified 18.08.2025 18:19:55
A maliciously crafted QPY file can potential execute arbitrary-code embedded in the payload without privilege escalation when deserialising QPY formats < 13. A python process calling Qiskit 0.18.0 through 1.4.1's `qiskit.qpy.load()` function could po...
8.6
CVE-2025-1403
- EPSS 0.37%
- Published 21.02.2025 17:15:13
- Last modified 30.09.2025 15:25:51
Qiskit SDK 0.45.0 through 1.2.4 could allow a remote attacker to cause a denial of service using a maliciously crafted QPY file containing a malformed symengine serialization stream which can cause a segfault within the symengine library.
1