CVE detail
CVE-2025-0665
libcurl would wrongly close the same eventfd file descriptor twice when taking down a connection channel after having completed a threaded name resolve.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 20.8 · diversity 18.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
7 source links · newest first
- CVE-2025-0665 eventfd double closeMicrosoft MSRC
Information published.
vendormsrc.microsoft.comMay 19, 2026, 8:01 AM - https://security.netapp.com/advisory/ntap-20250306-0007/security.netapp.com
No excerpt available.
Vendor Advisorysecurity.netapp.comFeb 5, 2025, 10:15 AM - http://www.openwall.com/lists/oss-security/2025/02/05/5www.openwall.com
No excerpt available.
Exploitwww.openwall.comFeb 5, 2025, 10:15 AM - http://www.openwall.com/lists/oss-security/2025/02/05/2www.openwall.com
No excerpt available.
Exploitwww.openwall.comFeb 5, 2025, 10:15 AM - https://hackerone.com/reports/2954286hackerone.com
No excerpt available.
Exploithackerone.comFeb 5, 2025, 10:15 AM No excerpt available.
Vendor Advisorycurl.seFeb 5, 2025, 10:15 AMNo excerpt available.
Vendor Advisorycurl.seFeb 5, 2025, 10:15 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2025-0167CVSS 3.4 · Low
When asked to use a `.netrc` file for credentials **and** to follow HTTP redirects, curl could leak the password used for the first host to the followed-to host under certain circ…
4 mentions - CVE-2024-6119CVSS 7.5 · High
Issue summary: Applications performing certificate name checks (e.g., TLS clients checking server certificates) may attempt to read an invalid memory address resulting in abnormal…
- CVE-2021-4203CVSS 6.8 · Medium
A use-after-free read flaw was found in sock_getsockopt() in net/core/sock.c due to SO_PEERCRED and SO_PEERGROUPS race with listen() (and connect()) in the Linux kernel. In this f…
- CVE-2022-0492CVSS 7.8 · High
A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the…
- CVE-2021-3753CVSS 4.7 · Medium
A race problem was seen in the vt_k_ioctl in drivers/tty/vt/vt_ioctl.c in the Linux kernel, which may cause an out of bounds read in vt as the write access to vc_mode is not prote…
- CVE-2025-24928CVSS 7.8 · High
libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a stack-based buffer overflow in xmlSnprintfElements in valid.c. To exploit this, DTD validation must occur for an untrusted do…