216.73.217.22

CVE-2025-36905

· Published 04/09/2025 10:42 · Modified 04/09/2025 15:35

Labels: CVE-2025-36905 2025-09-04CVE-2025-36905CWE-693[email protected]

Essential information

Published
04/09/2025 10:42
Modified
04/09/2025 15:35
Author
Creator
CVSS
7.8 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CVSS metrics

Description

In gxp_mapping_create of gxp_mapping.c, there is a possible privilege escalation due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

NVD status

Status
Undergoing Analysis — CVE is currently being analyzed by NVD staff, this process results in association of reference link tags, CVSS scores, CWE association, and CPE applicability statements.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
google / gxp cpe:2.3:a:google:gxp:*:*:*:*:*:*:*:*

References