Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-9396

Опубликовано: 24 авг. 2025
Источник: debian
EPSS Низкий

Описание

A security flaw has been discovered in ckolivas lrzip up to 0.651. This impacts the function __GI_____strtol_l_internal of the file strtol_l.c. Performing manipulation results in null pointer dereference. The attack is only possible with local access. The exploit has been released to the public and may be exploited.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
lrzipunfixedpackage

Примечания

  • Crash in CLI tool, no security impact

  • https://github.com/ckolivas/lrzip/issues/264

  • Fixed by: https://github.com/ckolivas/lrzip/commit/28850604093df81865378986bd6a043fcb6a1cf3 (v0.660)

EPSS

Процентиль: 18%
0.00266
Низкий

Связанные уязвимости

CVSS3: 3.3
ubuntu
около 1 года назад

A security flaw has been discovered in ckolivas lrzip up to 0.651. This impacts the function __GI_____strtol_l_internal of the file strtol_l.c. Performing manipulation results in null pointer dereference. The attack is only possible with local access. The exploit has been released to the public and may be exploited.

CVSS3: 3.3
nvd
около 1 года назад

A security flaw has been discovered in ckolivas lrzip up to 0.651. This impacts the function __GI_____strtol_l_internal of the file strtol_l.c. Performing manipulation results in null pointer dereference. The attack is only possible with local access. The exploit has been released to the public and may be exploited.

CVSS3: 3.3
github
около 1 года назад

A security flaw has been discovered in ckolivas lrzip up to 0.651. This impacts the function __GI_____strtol_l_internal of the file strtol_l.c. Performing manipulation results in null pointer dereference. The attack is only possible with local access. The exploit has been released to the public and may be exploited.

suse-cvrf
2 месяца назад

Security update for lrzip

EPSS

Процентиль: 18%
0.00266
Низкий