216.73.217.22

CVE-2025-36887

· Published 04/09/2025 10:42 · Modified 04/09/2025 15:35

Labels: CVE-2025-36887 2025-09-04CVE-2025-36887CWE-787[email protected]

Essential information

Published
04/09/2025 10:42
Modified
04/09/2025 15:35
Author
Creator
CVSS
7.8 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CVSS metrics

Description

In wl_cfgscan_update_v3_schedscan_results() of wl_cfgscan.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

NVD status

Status
Undergoing Analysis — CVE is currently being analyzed by NVD staff, this process results in association of reference link tags, CVSS scores, CWE association, and CPE applicability statements.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
google / wl cfgscan cpe:2.3:a:google:wl_cfgscan:*:*:*:*:*:*:*:*

References