CVE-2025-1376

A vulnerability classified as problematic was found in GNU elfutils 0.192. This vulnerability affects the function elf_strptr in the library /libelf/elf_strptr.c of the component eu-strip. The manipulation leads to denial of service. It is possible to launch the attack on the local host. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. The name of the patch is b16f441cca0a4841050e3215a9f120a6d8aea918. It is recommended to apply a patch to fix this issue.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:elfutils_project:elfutils:0.192:*:*:*:*:*:*:*

History

04 Nov 2025, 20:21

Type Values Removed Values Added
CPE cpe:2.3:a:elfutils_project:elfutils:0.192:*:*:*:*:*:*:*
First Time Elfutils Project
Elfutils Project elfutils
References () https://sourceware.org/bugzilla/attachment.cgi?id=15940 - () https://sourceware.org/bugzilla/attachment.cgi?id=15940 - Exploit
References () https://sourceware.org/bugzilla/show_bug.cgi?id=32672 - () https://sourceware.org/bugzilla/show_bug.cgi?id=32672 - Exploit, Issue Tracking
References () https://sourceware.org/bugzilla/show_bug.cgi?id=32672#c3 - () https://sourceware.org/bugzilla/show_bug.cgi?id=32672#c3 - Exploit, Issue Tracking
References () https://vuldb.com/?ctiid.295984 - () https://vuldb.com/?ctiid.295984 - Permissions Required, VDB Entry
References () https://vuldb.com/?id.295984 - () https://vuldb.com/?id.295984 - Third Party Advisory, VDB Entry
References () https://vuldb.com/?submit.497538 - () https://vuldb.com/?submit.497538 - Third Party Advisory, VDB Entry
References () https://www.gnu.org/ - () https://www.gnu.org/ - Product

Information

Published : 2025-02-17 05:15

Updated : 2025-11-04 20:21


NVD link : CVE-2025-1376

Mitre link : CVE-2025-1376

CVE.ORG link : CVE-2025-1376


JSON object : View

Products Affected

elfutils_project

  • elfutils
CWE
CWE-404

Improper Resource Shutdown or Release