CVE-2025-30089

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Mar 17, 2025
CWE ID 150

Summary

CVE-2025-30089 is a vulnerability affecting the gurk library, also known as gurk-rs, up to version 0.6.3. This issue arises due to the library's mishandling of ANSI escape sequences. An attacker can exploit this flaw by sending specially crafted input containing malformed ANSI escape sequences, leading to unintended behavior or potential memory corruption. The impact of this vulnerability could range from denial-of-service to arbitrary code execution, depending on the specific context in which gurk is used. Users are strongly advised to update to a patched version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share