Логотип exploitDog
bind:"BDU:2025-05982" OR bind:"CVE-2025-2174"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2025-05982" OR bind:"CVE-2025-2174"

Количество 8

Количество 8

fstec логотип

BDU:2025-05982

3 месяца назад

Уязвимость библиотеки захвата и декодирования VBI libzvbi, связанная с целочисленным переполнением в функции bi_strndup_iconv_ucs2(), позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2025-2174

3 месяца назад

A vulnerability was found in libzvbi up to 0.2.43. It has been declared as problematic. Affected by this vulnerability is the function vbi_strndup_iconv_ucs2 of the file src/conv.c. The manipulation of the argument src_length leads to integer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 0.2.44 is able to address this issue. The patch is named ca1672134b3e2962cd392212c73f44f8f4cb489f. It is recommended to upgrade the affected component. The code maintainer was informed beforehand about the issues. She reacted very fast and highly professional.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2025-2174

3 месяца назад

A vulnerability was found in libzvbi up to 0.2.43. It has been declared as problematic. Affected by this vulnerability is the function vbi_strndup_iconv_ucs2 of the file src/conv.c. The manipulation of the argument src_length leads to integer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 0.2.44 is able to address this issue. The patch is named ca1672134b3e2962cd392212c73f44f8f4cb489f. It is recommended to upgrade the affected component. The code maintainer was informed beforehand about the issues. She reacted very fast and highly professional.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2025-2174

3 месяца назад

A vulnerability was found in libzvbi up to 0.2.43. It has been declare ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-2gqq-g5xg-qr37

3 месяца назад

A vulnerability was found in libzvbi up to 0.2.43. It has been declared as problematic. Affected by this vulnerability is the function vbi_strndup_iconv_ucs2 of the file src/conv.c. The manipulation of the argument src_length leads to integer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 0.2.44 is able to address this issue. The patch is named ca1672134b3e2962cd392212c73f44f8f4cb489f. It is recommended to upgrade the affected component. The code maintainer was informed beforehand about the issues. She reacted very fast and highly professional.

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0988-1

3 месяца назад

Security update for zvbi

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0979-1

3 месяца назад

Security update for zvbi

EPSS: Низкий
redos логотип

ROS-20250430-09

около 2 месяцев назад

Множественные уязвимости zvbi

CVSS3: 7.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2025-05982

Уязвимость библиотеки захвата и декодирования VBI libzvbi, связанная с целочисленным переполнением в функции bi_strndup_iconv_ucs2(), позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
0%
Низкий
3 месяца назад
ubuntu логотип
CVE-2025-2174

A vulnerability was found in libzvbi up to 0.2.43. It has been declared as problematic. Affected by this vulnerability is the function vbi_strndup_iconv_ucs2 of the file src/conv.c. The manipulation of the argument src_length leads to integer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 0.2.44 is able to address this issue. The patch is named ca1672134b3e2962cd392212c73f44f8f4cb489f. It is recommended to upgrade the affected component. The code maintainer was informed beforehand about the issues. She reacted very fast and highly professional.

CVSS3: 5.3
0%
Низкий
3 месяца назад
nvd логотип
CVE-2025-2174

A vulnerability was found in libzvbi up to 0.2.43. It has been declared as problematic. Affected by this vulnerability is the function vbi_strndup_iconv_ucs2 of the file src/conv.c. The manipulation of the argument src_length leads to integer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 0.2.44 is able to address this issue. The patch is named ca1672134b3e2962cd392212c73f44f8f4cb489f. It is recommended to upgrade the affected component. The code maintainer was informed beforehand about the issues. She reacted very fast and highly professional.

CVSS3: 5.3
0%
Низкий
3 месяца назад
debian логотип
CVE-2025-2174

A vulnerability was found in libzvbi up to 0.2.43. It has been declare ...

CVSS3: 5.3
0%
Низкий
3 месяца назад
github логотип
GHSA-2gqq-g5xg-qr37

A vulnerability was found in libzvbi up to 0.2.43. It has been declared as problematic. Affected by this vulnerability is the function vbi_strndup_iconv_ucs2 of the file src/conv.c. The manipulation of the argument src_length leads to integer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 0.2.44 is able to address this issue. The patch is named ca1672134b3e2962cd392212c73f44f8f4cb489f. It is recommended to upgrade the affected component. The code maintainer was informed beforehand about the issues. She reacted very fast and highly professional.

CVSS3: 5.3
0%
Низкий
3 месяца назад
suse-cvrf логотип
SUSE-SU-2025:0988-1

Security update for zvbi

3 месяца назад
suse-cvrf логотип
SUSE-SU-2025:0979-1

Security update for zvbi

3 месяца назад
redos логотип
ROS-20250430-09

Множественные уязвимости zvbi

CVSS3: 7.3
около 2 месяцев назад

Уязвимостей на страницу