CVE-2025-26519

CVSS 3.1 Score 8.1 of 10 (high)

Details

Published Feb 14, 2025
CWE ID 787

Summary

CVE-2025-26519 is a vulnerability affecting musl libc versions 0.9.13 through 1.2.5 prior to 1.2.6. An attacker can exploit this out-of-bounds write issue by triggering an iconv conversion of untrusted EUC-KR text to UTF-8. Successful exploitation may allow the attacker to write data beyond the intended memory boundaries, potentially leading to code injection or other security compromises. It is crucial for users to update their musl libc installations to the patched version (1.2.6) to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share