Description

When the assert() function in the GNU C Library versions 2.13 to 2.40 fails, it does not allocate enough space for the assertion failure message string and size information, which may lead to a buffer overflow if the message string size aligns to page size.

INFO

Published Date :

2025-01-22T13:11:30.406Z

Last Modified :

2026-02-04T20:45:35.724Z

Source :

glibc
AFFECTED PRODUCTS

The following products are affected by CVE-2025-0395 vulnerability.

Vendors Products
Redhat
  • Enterprise Linux
  • Rhel E4s
  • Rhel Eus

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact