CVE detail
CVE-2025-1372
A vulnerability was found in GNU elfutils 0.192. It has been declared as critical. Affected by this vulnerability is the function dump_data_section/print_string_section of the file readelf.c of the component eu-readelf. The manipulation of the argument z/x leads to buffer overflow. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. The identifier of the patch is 73db9d2021cab9e23fd734b0a76a612d52a6f1db. It is recommended to apply a patch to fix this issue.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 22.0 · diversity 11.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
8 source links · newest first
- https://www.gnu.org/www.gnu.org
No excerpt available.
Third Party Advisorywww.gnu.orgFeb 17, 2025, 3:15 AM - https://vuldb.com/?submit.496485vuldb.com
No excerpt available.
Exploitvuldb.comFeb 17, 2025, 3:15 AM - https://vuldb.com/?id.295981vuldb.com
No excerpt available.
Exploitvuldb.comFeb 17, 2025, 3:15 AM - https://vuldb.com/?ctiid.295981vuldb.com
No excerpt available.
Exploitvuldb.comFeb 17, 2025, 3:15 AM - https://sourceware.org/bugzilla/show_bug.cgi?id=32657sourceware.org
No excerpt available.
Exploitsourceware.orgFeb 17, 2025, 3:15 AM - https://sourceware.org/bugzilla/show_bug.cgi?id=32656#c3sourceware.org
No excerpt available.
Exploitsourceware.orgFeb 17, 2025, 3:15 AM - https://sourceware.org/bugzilla/show_bug.cgi?id=32656sourceware.org
No excerpt available.
Exploitsourceware.orgFeb 17, 2025, 3:15 AM - https://sourceware.org/bugzilla/attachment.cgi?id=15927sourceware.org
No excerpt available.
Exploitsourceware.orgFeb 17, 2025, 3:15 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2025-1365CVSS 4.8 · Medium
A vulnerability, which was classified as critical, was found in GNU elfutils 0.192. This affects the function process_symtab of the file readelf.c of the component eu-readelf. The…
- CVE-2024-14044CVSS 2.1 · Low
A vulnerability was identified in Open5GS up to 2.7.1. This issue affects the function pcrf_rx_aar_cb of the file src/pcrf/pcrf-rx-path.c of the component Diameter Rx Handler. The…
- CVE-2026-16364CVSS 9.1 · Critical
Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
- CVE-2026-15543CVSS 7.4 · High
A vulnerability was found in Tenda CH22 1.0.0.1. This impacts the function formCertListInfo of the file /goform/CertListInfo. The manipulation of the argument Name results in buff…
- CVE-2026-15484CVSS 8.7 · High
A vulnerability was detected in TRENDnet TEW-821DAP 1.12B01. The affected element is the function sub_41EC14 of the file /goform/tools_nslookup of the component ssi. The manipulat…
- CVE-2026-15483CVSS 8.7 · High
A security vulnerability has been detected in TRENDnet TEW-821DAP 1.12B01. Impacted is the function sub_41EC14 of the file /goform/tools_nslookup of the component ssi. The manipul…