When the assert() function in the GNU C Library versions 2.13 to 2.40
fails, it does not allocate enough space for the assertion failure
message string and size information, which may lead to a buffer overflow
if the message string size aligns to page size. (CVE-2025-0395)
- https://bugs.mageia.org/show_bug.cgi?id=33953
- https://www.openwall.com/lists/oss-security/2025/01/22/4
- https://www.cve.org/CVERecord?id=CVE-2025-0395
- 9/core/glibc-2.36-55.mga9
Get the latest Linux and open source security news straight to your inbox.