CVE-2025-1371

A vulnerability has been found in GNU elfutils 0.192 and classified as problematic. This vulnerability affects the function handle_dynamic_symtab of the file readelf.c of the component eu-read. The manipulation leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The patch is identified as b38e562a4c907e08171c76b8b2def8464d5a104a. It is recommended to apply a patch to fix this issue.
Configurations

No configuration.

History

18 Feb 2025, 20:15

Type Values Removed Values Added
References () https://sourceware.org/bugzilla/show_bug.cgi?id=32655 - () https://sourceware.org/bugzilla/show_bug.cgi?id=32655 -
Summary
  • (es) Se ha encontrado una vulnerabilidad en GNU elfutils 0.192 y se ha clasificado como problemática. Esta vulnerabilidad afecta a la función handle_dynamic_symtab del archivo readelf.c del componente eu-read. La manipulación provoca la desreferenciación de puntero nulo. Es necesario atacar de forma local. La vulnerabilidad se ha hecho pública y puede utilizarse. El parche se identifica como b38e562a4c907e08171c76b8b2def8464d5a104a. Se recomienda aplicar un parche para solucionar este problema.

17 Feb 2025, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-17 03:15

Updated : 2025-02-18 20:15


NVD link : CVE-2025-1371

Mitre link : CVE-2025-1371

CVE.ORG link : CVE-2025-1371


JSON object : View

Products Affected

No product.

CWE
CWE-404

Improper Resource Shutdown or Release

CWE-476

NULL Pointer Dereference