Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-15281

Опубликовано: 20 янв. 2026
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

Calling wordexp with WRDE_REUSE in conjunction with WRDE_APPEND in the GNU C Library version 2.0 to version 2.42 may cause the interface to return uninitialized memory in the we_wordv member, which on subsequent calls to wordfree may abort the process.

EPSS

Процентиль: 15%
0.00049
Низкий

7.5 High

CVSS3

Дефекты

CWE-908

Связанные уязвимости

CVSS3: 7.5
ubuntu
18 дней назад

Calling wordexp with WRDE_REUSE in conjunction with WRDE_APPEND in the GNU C Library version 2.0 to version 2.42 may cause the interface to return uninitialized memory in the we_wordv member, which on subsequent calls to wordfree may abort the process.

CVSS3: 7.5
debian
18 дней назад

Calling wordexp with WRDE_REUSE in conjunction with WRDE_APPEND in the ...

CVSS3: 7.5
github
18 дней назад

Calling wordexp with WRDE_REUSE in conjunction with WRDE_APPEND in the GNU C Library version 2.0 to version 2.42 may cause the interface to return uninitialized memory in the we_wordv member, which on subsequent calls to wordfree may abort the process.

EPSS

Процентиль: 15%
0.00049
Низкий

7.5 High

CVSS3

Дефекты

CWE-908