Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-2588

Опубликовано: 21 мар. 2025
Источник: debian

Описание

A vulnerability has been found in Hercules Augeas 1.14.1 and classified as problematic. This vulnerability affects the function re_case_expand of the file src/fa.c. The manipulation of the argument re leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
augeasunfixedpackage
augeasno-dsatrixiepackage
augeasno-dsabookwormpackage
augeaspostponedbullseyepackage

Примечания

  • https://github.com/hercules-team/augeas/issues/852

  • https://github.com/hercules-team/augeas/pull/854

  • Fixed by: https://github.com/hercules-team/augeas/commit/af2aa88ab37fc48167d8c5e43b1770a4ba2ff403

Связанные уязвимости

CVSS3: 3.3
ubuntu
11 месяцев назад

A vulnerability has been found in Hercules Augeas 1.14.1 and classified as problematic. This vulnerability affects the function re_case_expand of the file src/fa.c. The manipulation of the argument re leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

CVSS3: 3.3
redhat
11 месяцев назад

A vulnerability has been found in Hercules Augeas 1.14.1 and classified as problematic. This vulnerability affects the function re_case_expand of the file src/fa.c. The manipulation of the argument re leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

CVSS3: 3.3
nvd
11 месяцев назад

A vulnerability has been found in Hercules Augeas 1.14.1 and classified as problematic. This vulnerability affects the function re_case_expand of the file src/fa.c. The manipulation of the argument re leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

CVSS3: 3.3
msrc
10 месяцев назад

Hercules Augeas fa.c re_case_expand null pointer dereference

suse-cvrf
9 месяцев назад

Security update for augeas