CVE-2025-29481
CVSS 3.1 Score 6.2 of 10 (medium)
Details
Published Apr 7, 2025
Updated: Apr 15, 2025
CWE ID 120
Summary
CVE-2025-29481 is a buffer overflow vulnerability affecting libbpf version 1.5.0. An attacker can exploit this flaw by providing malicious input to the `bpf_object__init_prog` function, causing a buffer overflow that allows the execution of arbitrary code. This issue poses a significant risk, as it enables local attackers to gain unauthorized control over the system. Organizations using libbpf 1.5.0 should immediately upgrade to a patched version to mitigate the risk of successful exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.