Логотип exploitDog
bind:"CVE-2025-67873" OR bind:"CVE-2025-68114"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-67873" OR bind:"CVE-2025-68114"

Количество 12

Количество 12

suse-cvrf логотип

SUSE-SU-2026:0060-1

3 месяца назад

Security update for capstone

EPSS: Низкий
oracle-oval логотип

ELSA-2026-4898

13 дней назад

ELSA-2026-4898: capstone security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2025-68114

3 месяца назад

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, an unchecked vsnprintf return in SStream_concat lets a malicious cs_opt_mem.vsnprintf drive SStream’s index negative or past the end, leading to a stack buffer underflow/overflow when the next write occurs. Commit 2c7797182a1618be12017d7d41e0b6581d5d529e fixes the issue.

CVSS3: 4.8
EPSS: Низкий
redhat логотип

CVE-2025-68114

3 месяца назад

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, an unchecked vsnprintf return in SStream_concat lets a malicious cs_opt_mem.vsnprintf drive SStream’s index negative or past the end, leading to a stack buffer underflow/overflow when the next write occurs. Commit 2c7797182a1618be12017d7d41e0b6581d5d529e fixes the issue.

CVSS3: 7.3
EPSS: Низкий
nvd логотип

CVE-2025-68114

3 месяца назад

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, an unchecked vsnprintf return in SStream_concat lets a malicious cs_opt_mem.vsnprintf drive SStream’s index negative or past the end, leading to a stack buffer underflow/overflow when the next write occurs. Commit 2c7797182a1618be12017d7d41e0b6581d5d529e fixes the issue.

CVSS3: 4.8
EPSS: Низкий
msrc логотип

CVE-2025-68114

3 месяца назад

Capstone doesn't check vsnprintf return in SStream_concat, allows stack buffer underflow and overflow

CVSS3: 4.8
EPSS: Низкий
debian логотип

CVE-2025-68114

3 месяца назад

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prio ...

CVSS3: 4.8
EPSS: Низкий
ubuntu логотип

CVE-2025-67873

3 месяца назад

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback can make cs_disasm/cs_disasm_iter memcpy more than 24 bytes into cs_insn.bytes, causing a heap buffer overflow in the disassembly path. Commit cbef767ab33b82166d263895f24084b75b316df3 fixes the issue.

CVSS3: 4.8
EPSS: Низкий
redhat логотип

CVE-2025-67873

3 месяца назад

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback can make cs_disasm/cs_disasm_iter memcpy more than 24 bytes into cs_insn.bytes, causing a heap buffer overflow in the disassembly path. Commit cbef767ab33b82166d263895f24084b75b316df3 fixes the issue.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2025-67873

3 месяца назад

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback can make cs_disasm/cs_disasm_iter memcpy more than 24 bytes into cs_insn.bytes, causing a heap buffer overflow in the disassembly path. Commit cbef767ab33b82166d263895f24084b75b316df3 fixes the issue.

CVSS3: 4.8
EPSS: Низкий
msrc логотип

CVE-2025-67873

26 дней назад

Capstone doesn't check Skipdata length, leading to cs_insn.bytes heap buffer overflow

CVSS3: 4.8
EPSS: Низкий
debian логотип

CVE-2025-67873

3 месяца назад

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prio ...

CVSS3: 4.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
SUSE-SU-2026:0060-1

Security update for capstone

3 месяца назад
oracle-oval логотип
ELSA-2026-4898

ELSA-2026-4898: capstone security update (MODERATE)

13 дней назад
ubuntu логотип
CVE-2025-68114

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, an unchecked vsnprintf return in SStream_concat lets a malicious cs_opt_mem.vsnprintf drive SStream’s index negative or past the end, leading to a stack buffer underflow/overflow when the next write occurs. Commit 2c7797182a1618be12017d7d41e0b6581d5d529e fixes the issue.

CVSS3: 4.8
0%
Низкий
3 месяца назад
redhat логотип
CVE-2025-68114

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, an unchecked vsnprintf return in SStream_concat lets a malicious cs_opt_mem.vsnprintf drive SStream’s index negative or past the end, leading to a stack buffer underflow/overflow when the next write occurs. Commit 2c7797182a1618be12017d7d41e0b6581d5d529e fixes the issue.

CVSS3: 7.3
0%
Низкий
3 месяца назад
nvd логотип
CVE-2025-68114

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, an unchecked vsnprintf return in SStream_concat lets a malicious cs_opt_mem.vsnprintf drive SStream’s index negative or past the end, leading to a stack buffer underflow/overflow when the next write occurs. Commit 2c7797182a1618be12017d7d41e0b6581d5d529e fixes the issue.

CVSS3: 4.8
0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-68114

Capstone doesn't check vsnprintf return in SStream_concat, allows stack buffer underflow and overflow

CVSS3: 4.8
0%
Низкий
3 месяца назад
debian логотип
CVE-2025-68114

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prio ...

CVSS3: 4.8
0%
Низкий
3 месяца назад
ubuntu логотип
CVE-2025-67873

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback can make cs_disasm/cs_disasm_iter memcpy more than 24 bytes into cs_insn.bytes, causing a heap buffer overflow in the disassembly path. Commit cbef767ab33b82166d263895f24084b75b316df3 fixes the issue.

CVSS3: 4.8
0%
Низкий
3 месяца назад
redhat логотип
CVE-2025-67873

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback can make cs_disasm/cs_disasm_iter memcpy more than 24 bytes into cs_insn.bytes, causing a heap buffer overflow in the disassembly path. Commit cbef767ab33b82166d263895f24084b75b316df3 fixes the issue.

CVSS3: 6.1
0%
Низкий
3 месяца назад
nvd логотип
CVE-2025-67873

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback can make cs_disasm/cs_disasm_iter memcpy more than 24 bytes into cs_insn.bytes, causing a heap buffer overflow in the disassembly path. Commit cbef767ab33b82166d263895f24084b75b316df3 fixes the issue.

CVSS3: 4.8
0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-67873

Capstone doesn't check Skipdata length, leading to cs_insn.bytes heap buffer overflow

CVSS3: 4.8
0%
Низкий
26 дней назад
debian логотип
CVE-2025-67873

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prio ...

CVSS3: 4.8
0%
Низкий
3 месяца назад

Уязвимостей на страницу