CVE-2025-20891

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Feb 4, 2025
Updated: Feb 12, 2025
CWE ID 125

Summary

CVE-2025-20891 is a vulnerability in libsthmbc.so, affecting versions prior to the SMR Jan-2025 Release 1. This issue permits an out-of-bounds read, enabling local attackers to access arbitrary memory. The exploitation of this vulnerability requires user interaction with malformed video thumbnails.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share