Skip to content

[GHSA-xwc8-rf6m-xr86] hnswlib Double Free vulnerability#7232

Closed
ilyajob05 wants to merge 1 commit intomainfrom
ilyajob05-GHSA-xwc8-rf6m-xr86
Closed

[GHSA-xwc8-rf6m-xr86] hnswlib Double Free vulnerability#7232
ilyajob05 wants to merge 1 commit intomainfrom
ilyajob05-GHSA-xwc8-rf6m-xr86

Conversation

@ilyajob05
Copy link

@ilyajob05 ilyajob05 commented Mar 24, 2026

Updates

  • Affected products
  • Description
  • References
  • Summary

Comments
The advisory currently shows no patched version. The fix was merged in PR nmslib/hnswlib#508 and included in version 0.8.0 (PyPI, 2023-12-03). Updating to reflect the fixed version so downstream scanners correctly identify patched installations.

@helixplant
Copy link

Hi,
Thank you for your contribution, the patched version has been added to the advisory.

@helixplant helixplant closed this Mar 25, 2026
@ilyajob05
Copy link
Author

Hi @helixplant
These changes were not added "Closed with unmerged commits"

@helixplant
Copy link

I understand the confusion, there was an issue with merging this PR, but the changes have been made to the advisory which can be viewed here GHSA-xwc8-rf6m-xr86, you have been given an analyst credit for your contributions. Please let me know if you have any further questions!

@ilyajob05
Copy link
Author

@helixplant thank you! 😎

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants