Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-68114

Опубликовано: 17 дек. 2025
Источник: redhat
CVSS3: 7.3
EPSS Низкий

Описание

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, an unchecked vsnprintf return in SStream_concat lets a malicious cs_opt_mem.vsnprintf drive SStream’s index negative or past the end, leading to a stack buffer underflow/overflow when the next write occurs. Commit 2c7797182a1618be12017d7d41e0b6581d5d529e fixes the issue.

A flaw was found in Capstone, a disassembly framework. An unchecked return value from vsnprintf within the SStream_concat function allows a malicious input to manipulate the internal stream index. This can lead to a stack buffer underflow or overflow, potentially enabling a local attacker to achieve information disclosure, alter data, or cause a denial of service.

Отчет

This vulnerability is rated Moderate as an unchecked vsnprintf return in Capstone's SStream_concat function can lead to stack buffer underflow or overflow. Exploitation requires local access and user interaction. This affects Capstone and other components in Red Hat Enterprise Linux, OpenShift Container Platform, and Community Projects.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10capstoneAffected
Red Hat Enterprise Linux 10rubyNot affected
Red Hat Enterprise Linux 10rustNot affected
Red Hat Enterprise Linux 8ruby:3.3/rubyNot affected
Red Hat Enterprise Linux 9ruby:3.3/rubyNot affected
Red Hat Enterprise Linux 9rustNot affected
Red Hat OpenShift Container Platform 4rhcosAffected
Red Hat Enterprise Linux 9capstoneFixedRHSA-2026:489818.03.2026

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-787
https://bugzilla.redhat.com/show_bug.cgi?id=2423416capstone: Capstone: Memory corruption via unchecked vsnprintf return

EPSS

Процентиль: 11%
0.00037
Низкий

7.3 High

CVSS3

Связанные уязвимости

CVSS3: 4.8
ubuntu
3 месяца назад

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, an unchecked vsnprintf return in SStream_concat lets a malicious cs_opt_mem.vsnprintf drive SStream’s index negative or past the end, leading to a stack buffer underflow/overflow when the next write occurs. Commit 2c7797182a1618be12017d7d41e0b6581d5d529e fixes the issue.

CVSS3: 4.8
nvd
3 месяца назад

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, an unchecked vsnprintf return in SStream_concat lets a malicious cs_opt_mem.vsnprintf drive SStream’s index negative or past the end, leading to a stack buffer underflow/overflow when the next write occurs. Commit 2c7797182a1618be12017d7d41e0b6581d5d529e fixes the issue.

CVSS3: 4.8
msrc
3 месяца назад

Capstone doesn't check vsnprintf return in SStream_concat, allows stack buffer underflow and overflow

CVSS3: 4.8
debian
3 месяца назад

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prio ...

suse-cvrf
3 месяца назад

Security update for capstone

EPSS

Процентиль: 11%
0.00037
Низкий

7.3 High

CVSS3