Security Advisory

CVE-2025-5001

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-05-20 21:31:05
Last updated 2025-05-21 13:57:09
Assigner VulDB
State PUBLISHED

Description

A vulnerability was found in GNU PSPP 82fb509fb2fedd33e7ac0c46ca99e108bb3bdffb. It has been declared as problematic. This vulnerability affects the function calloc of the file pspp-convert.c. The manipulation of the argument -l leads to integer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used.