CVE-2025-2176
CVSS 3.1 Score 7.8 of 10 (high)
Details
Summary
CVE-2025-2176 is a critical vulnerability affecting libzvbi up to version 0.2.43. This issue lies in the vbi_capture_sim_load_caption function of the file src/io-sim.c, leading to integer overflow. Malicious actors can exploit this remotely, making it a significant security concern. The exploit for this vulnerability has been publicly disclosed, increasing the risk. To mitigate the issue, upgrading to version 0.2.44 is advised. The patch identifier is ca1671234b3e2962cd392212c73f44f8f4cb489f. The code maintainer was informed and reacted promptly and professionally, releasing a patch to address the vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.