216.73.217.22

CVE-2025-9396

· Published 24/08/2025 23:15 · Modified 24/08/2025 23:15

Labels: CVE-2025-9396 2025-08-24CVE-2025-9396CWE-404[email protected]

Essential information

Published
24/08/2025 23:15
Modified
24/08/2025 23:15
Author
Creator
CVSS
4.8 MEDIUM (v3) 4.8 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A security flaw has been discovered in ckolivas lrzip up to 0.651. This impacts the function __GI_____strtol_l_internal of the file strtol_l.c. Performing manipulation results in null pointer dereference. The attack is only possible with local access. The exploit has been released to the public and may be exploited.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
ckolivas / lrzip cpe:2.3:a:ckolivas:lrzip:*:*:*:*:*:*:*:*

References