Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Gentoo: GLSA-202505-06 High: glibc buffer overflow risk issue

gentoo
Calendar Grey May 12, 2025
Dist Gentoo Esm H88
Review the Gentoo security advisory GLSA 202505-06 detailing a high glibc buffer overflow issue.
A vulnerability has been discovered in glibc, which can lead to execution of arbitrary code..

Summary

A vulnerability has been discovered in glibc. Please review the CVE identifier referenced below for details.

Resolution

All glibc users should upgrade to the latest version:
# emerge --sync # emerge --ask --oneshot --verbose ">=sys-libs/glibc-2.40-r8"

References

[ 1 ] CVE-2025-0395 https://nvd.nist.gov/vuln/detail/CVE-2025-0395

Availability

This GLSA and any updates to it are available for viewing at the Gentoo Security Website:
https://security.gentoo.org/glsa/202505-06
style>.gentoo_availability{display:block;}

Concerns

Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users' machines is of utmost importance to us. Any security concerns should be addressed to security@gentoo.org or alternatively, you may file a bug at https://bugs.gentoo.org.

Severity: High
Title: glibc: Buffer Overflow
Date: May 12, 2025
Bugs: #948592
ID: 202505-06

Synopsis

A vulnerability has been discovered in glibc, which can lead to execution of arbitrary code..

Background

glibc is a package that contains the GNU C library.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Package Vulnerable Unaffected -------------- ------------ ------------ sys-libs/glibc < 2.40-r8 >= 2.40-r8

Impact

Please review the referenced CVE identifier for details.

Workaround

There is no known workaround at this time.

Your message here