CVE detail
CVE-2025-1376
A vulnerability classified as problematic was found in GNU elfutils 0.192. This vulnerability affects the function elf_strptr in the library /libelf/elf_strptr.c of the component eu-strip. The manipulation leads to denial of service. It is possible to launch the attack on the local host. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. The name of the patch is b16f441cca0a4841050e3215a9f120a6d8aea918. It is recommended to apply a patch to fix this issue.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 23.0 · diversity 20.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
9 source links · newest first
- Siemens SINEC OSCISA Alerts
Metrics CVSS Version Base Score Base Severity Vector String 3.1 5.5 MEDIUM CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2025-40214 In the Linux kernel, the following vulnerability has been resolved: af_unix: Initialise scc_index in unix_add_edge(). Quang Le reported that the AF_UNIX GC could garbage-collect a receive queue of an alive in-flight soc
governmentwww.cisa.govJul 7, 2026, 12:00 PM - https://cert-portal.siemens.com/productcert/html/ssa-253495.htmlcert-portal.siemens.com
No excerpt available.
Vendor Advisorycert-portal.siemens.comFeb 17, 2025, 5:15 AM - https://www.gnu.org/www.gnu.org
No excerpt available.
Third Party Advisorywww.gnu.orgFeb 17, 2025, 5:15 AM - https://vuldb.com/?submit.497538vuldb.com
No excerpt available.
Exploitvuldb.comFeb 17, 2025, 5:15 AM - https://vuldb.com/?id.295984vuldb.com
No excerpt available.
Exploitvuldb.comFeb 17, 2025, 5:15 AM - https://vuldb.com/?ctiid.295984vuldb.com
No excerpt available.
Exploitvuldb.comFeb 17, 2025, 5:15 AM - https://sourceware.org/bugzilla/show_bug.cgi?id=32672#c3sourceware.org
No excerpt available.
Exploitsourceware.orgFeb 17, 2025, 5:15 AM - https://sourceware.org/bugzilla/show_bug.cgi?id=32672sourceware.org
No excerpt available.
Exploitsourceware.orgFeb 17, 2025, 5:15 AM - https://sourceware.org/bugzilla/attachment.cgi?id=15940sourceware.org
No excerpt available.
Exploitsourceware.orgFeb 17, 2025, 5:15 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2025-1377CVSS 4.8 · Medium
A vulnerability, which was classified as problematic, has been found in GNU elfutils 0.192. This issue affects the function gelf_getsymshndx of the file strip.c of the component e…
- CVE-2025-1371CVSS 4.8 · Medium
A vulnerability has been found in GNU elfutils 0.192 and classified as problematic. This vulnerability affects the function handle_dynamic_symtab of the file readelf.c of the comp…
- CVE-2026-19746CVSS 2.1 · Low
A vulnerability has been found in Calix GigaSpire 26.1.0. The affected element is an unknown function of the file traceroute.cmd. The manipulation leads to denial of service. The…
- CVE-2026-19745CVSS 2.1 · Low
A flaw has been found in Calix GigaSpire 26.1.0. Impacted is an unknown function of the file utilities_configurationsave.cgi of the component Web Management Interface. Executing a…
- CVE-2025-15687CVSS 2.1 · Low
A security flaw has been discovered in Open5GS up to 2.7.6. Impacted is the function smf_gx_cca_cb of the component SMF Diameter Gx Credit-Control-Answer Handler. The manipulation…
- CVE-2025-15686CVSS 2.1 · Low
A vulnerability has been found in Open5GS up to 2.7.6. Affected by this issue is the function fd_msg_sess_get of the component HSS Service. Such manipulation of the argument Sessi…