CVE-2025-8735
A vulnerability classified as problematic was found in GNU cflow up to 1.8. Affected by this vulnerability is the function yylex of the file c.c of the component Lexer. The manipulation leads to null pointer dereference. An attack has to be approached locally. The exploit has been disclosed to the public and may be used.
Vendor
-
Product
-
CWE
Yayın Tarihi
2025-08-08 19:15:37
Güncelleme
2025-10-28 01:16:12
Source Identifier
cna@vuldb.com
KEV Date Added
-
Kategoriler
Referanslar
https://drive.google.com/file/d/1Q_rDQSEl3cBu6SUbfqr9pV9cHgvKcXFI/view?usp=drive_link
https://lists.gnu.org/archive/html/bug-cflow/2025-07/msg00000.html
https://vuldb.com/?ctiid.319231
https://vuldb.com/?id.319231
https://vuldb.com/?submit.622328
https://www.gnu.org/
https://www.openwall.com/lists/oss-security/2025/10/27/12