4.8
/ 10
MEDIUM
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability has been found in vstakhov libucl up to 0.9.2. Affected by this vulnerability is the function ucl_include_common of the file /src/ucl_util.c. Such manipulation leads to heap-based buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used.
Basic Information
ID
CVE-2025-11010
Source
VulDB
Published
Sep 26, 2025 at 11:02
Affected Product
Vendor
vstakhov
Product
libucl
Version
0.9.0
Affected Versions
vstakhov libucl 0.9.0
vstakhov libucl 0.9.1
vstakhov libucl 0.9.2
vstakhov libucl 0.9.1
vstakhov libucl 0.9.2