CVE-2025-46397
A flaw was found in xfig. This vulnerability allows possible code execution via local input manipulation via bezier_spline function.
CVSS
7.8
Alto
EPSS
0.3%
p22
KEV
—
Exploit Today
7
0-100
Publicado: 23 abr 2025 · Última mod.: 30 jun 2026 · CWE-120
0.3%EPSS · 30 días0.3%
2026-08-112026-09-07
A flaw was found in xfig. This vulnerability allows possible code execution via local input manipulation via bezier_spline function.
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:0700
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:0704
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:0705
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:0756
- access.redhat.comhttps://access.redhat.com/security/cve/CVE-2025-46397
- bugzilla.redhat.comhttps://bugzilla.redhat.com/show_bug.cgi?id=2362058
- sourceforge.nethttps://sourceforge.net/p/mcj/tickets/192/
- lists.debian.orghttps://lists.debian.org/debian-lts-announce/2025/04/msg00043.html
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-588397.8 ALT—
———In forEachLine of MountRegistry.cpp, there is a possible out of bounds read due to a buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.5hCVE-2026-588237.8 ALT—
———In stpropnci_process_std of stpropnci_std.cc, there is a possible memory safety issue due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.5hCVE-2026-552857.8 ALT—
———In openLogicalChannel of multiple files, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.5hCVE-2026-552778.0 ALT—
———In checkUiccListenConfigNeeded of RoutingManager.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.5hCVE-2026-4475610.0 CRÍ—
——0A memory safety vulnerability exists in the Extended Passport Protocol (EPP) processing library. Under specific conditions, an unauthenticated attacker could exploit a crafted network request containing a malformed EPP header, potentially resulting in undefined behavior and abnormal program termination. Successful exploitation may have a high impact on the confidentiality, integrity, and availability of the application.7hCVE-2026-861668.8 ALT39.5%
——12A vulnerability was determined in Tenda HG10 300001138. This issue affects the function formWanRedirect of the file /boaform/formWanRedirect of the component Boa Web Server. Executing a manipulation of the argument if can lead to buffer overflow. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.13h