Logo
vulnerabilityCVE-2025-6499
Name
CVE-2025-6499
Source
NVD ( link)Debian ( link)
Description
A vulnerability classified as problematic was found in vstakhov libucl up to 0.9.2. Affected by this vulnerability is the function ucl_parse_multiline_string of the file src/ucl_parser.c. The manipulation leads to heap-based buffer overflow. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
libucl
Exploitable

Vulnerability Ratings#


1.9
CVSSv4
3.3
CVSSv31
5.5
CVSSv31
1.7
CVSSv2
NaN
other

Others affected component#


Name
Project
Project Version
Version
Status
buildroot
master
0.8.2
Exploitable