Abseil could be made to crash if it received specially crafted input.. ========================================================================== Ubuntu Security Notice USN-7505-1 May 12, 2025 abseil vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 25.04 - Ubuntu 24.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: Abseil could be made to crash if it received specially crafted input. Software Description: - abseil: extensions to the C++ standard library Details: It was discovered that Abseil incorrectly handled memory with the upper bound of the size argument. An attacker could possibly use this issue to cause a denial of service or memory corruption. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 25.04 libabsl20230802 20230802.1-4.2ubuntu0.2 Ubuntu 24.10 libabsl20230802 20230802.1-4ubuntu1.2 Ubuntu 24.04 LTS libabsl20220623t64 20220623.1-3.1ubuntu3.2 Ubuntu 22.04 LTS libabsl20210324 0~20210324.2-2ubuntu0.2 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7505-1 CVE-2025-0838 Package Information: https://launchpad.net/ubuntu/+source/abseil/20230802.1-4.2ubuntu0.2 https://launchpad.net/ubuntu/+source/abseil/20230802.1-4ubuntu1.2 https://launchpad.net/ubuntu/+source/abseil/20220623.1-3.1ubuntu3.2 https://launchpad.net/ubuntu/+source/abseil/0~20210324.2-2ubuntu0.2 . The Ubuntu Security Notice USN-7506-1 highlights vulnerabilities linked to OpenSSL that can be exploited through malicious inputs, impacting several versions.. abseil security, Ubuntu update, denial of service, memory management issues. . Severity: Critical. LinuxSecurity.com Team
A vulnerability has been found in abseil, a collection of open-source C++ libraries that extend the C++ standard library, which might cause an heap buffer overflow. . ------------------------------------------------------------------------- Debian LTS Advisory DLA-4116-1
Get the latest Linux and open source security news straight to your inbox.