CVE-2024-25713
published 2024-02-29CVE-2024-25713: yyjson through 0.8.0 has a double free, leading to remote code execution in some cases, because the pool_free function lacks loop checks. (pool_free is part of…
PriorityP356high8.6CVSS 3.1
AVNACLPRNUINSUCLIHAL
EPSS
1.84%
76.7th percentile
yyjson through 0.8.0 has a double free, leading to remote code execution in some cases, because the pool_free function lacks loop checks. (pool_free is part of the pool series allocator, along with pool_malloc and pool_realloc.)
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | yyjson | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| github.com | ibireme_yyjson | >= 0 < 0.9.0 | 0.9.0 |
| ibireme | yyjson | <= 0.8.0 | — |
CVSS provenance
nvdv3.18.6HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L
osv6.5MEDIUM
vendor_debian8.6LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
raptor2 vulnerabilities
osv·2025-11-10·CVSS 6.5
CVE-2020-25713 raptor2 vulnerabilities
raptor2 vulnerabilities
Hanno Böck discovered that Raptor incorrectly handled memory operations
when processing certain input files. An attacker could possibly use this
issue to cause Raptor to crash, resulting in a denial of service.
(CVE-2020-25713)
Pedro Ribeiro discovered that Raptor incorrectly handled parsing certain
tuples. An attacker could possibly use this issue to cause Raptor to crash,
resulting in a denial of service. (CVE-2024-57822)
Pedro Ribeiro discovered that Raptor incorrectly handled parsing certain
turtles. An attacker could use this issue to cause Raptor to crash,
resulting in a denial of service, or possibly execute arbitrary code.
(CVE-2024-57823)
OSV
raptor2 vulnerabilities
osv·2025-03-03·CVSS 6.5
CVE-2020-25713 raptor2 vulnerabilities
raptor2 vulnerabilities
It was discovered that Raptor incorrectly handled memory operations when
processing certain input files. A remote attacker could possibly use this
issue to cause Raptor to crash, resulting in a denial of service. This
issue only affected Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2020-25713)
It was discovered that Raptor incorrectly handled parsing certain tuples. A
remote attacker could possibly use this issue to cause Raptor to crash,
resulting in a denial of service. (CVE-2024-57822)
It was discovered that Raptor incorrectly handled parsing certain turtles.
A remote attacker could use this issue to cause Raptor to crash, resulting
in a denial of service, or possibly execute arbitrary code.
(CVE-2024-57823)
OSV
yyjson has a Double Free vulnerability
osv·2024-02-29
CVE-2024-25713 [HIGH] yyjson has a Double Free vulnerability
yyjson has a Double Free vulnerability
### Summary
The pool series allocator (pool_malloc/pool_free/pool_realloc) by yysjon has a Double Free vulnerability, which may lead to arbitrary address writing and Denial of Service (DoS) attacks.
Arbitrary address writing, combined with other legitimate or illegitimate operations of programs using this library, can lead to remote code execution.
### Details
The core cause of this vulnerability lies in the pool_free function's lack of loop checks, while the direct cause stems from the pool_free function and similar free-series functions not performing pointer destruction, resulting in Use-After-Free (UAF) vulnerabilities.
### PoC
Below, a C language program using yyjson 0.8.0 is written to show how to exploit a Double Free vulnerability to cau
GHSA
yyjson has a Double Free vulnerability
ghsa·2024-02-29
CVE-2024-25713 [HIGH] CWE-94 yyjson has a Double Free vulnerability
yyjson has a Double Free vulnerability
### Summary
The pool series allocator (pool_malloc/pool_free/pool_realloc) by yysjon has a Double Free vulnerability, which may lead to arbitrary address writing and Denial of Service (DoS) attacks.
Arbitrary address writing, combined with other legitimate or illegitimate operations of programs using this library, can lead to remote code execution.
### Details
The core cause of this vulnerability lies in the pool_free function's lack of loop checks, while the direct cause stems from the pool_free function and similar free-series functions not performing pointer destruction, resulting in Use-After-Free (UAF) vulnerabilities.
### PoC
Below, a C language program using yyjson 0.8.0 is written to show how to exploit a Double Free vulnerability to cau
Debian
CVE-2024-25713: yyjson - yyjson through 0.8.0 has a double free, leading to remote code execution in some...
vendor_debian·2024·CVSS 8.6
CVE-2024-25713 [HIGH] CVE-2024-25713: yyjson - yyjson through 0.8.0 has a double free, leading to remote code execution in some...
yyjson through 0.8.0 has a double free, leading to remote code execution in some cases, because the pool_free function lacks loop checks. (pool_free is part of the pool series allocator, along with pool_malloc and pool_realloc.)
Scope: local
forky: resolved
sid: resolved
trixie: resolved
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://github.com/ibireme/yyjson/security/advisories/GHSA-q4m7-9pcm-fpxhhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6KQ67T4R7QEWURW5NMCCVLTBASL4ECHE/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NNICQVIF7BRYFWYRL3HPVAJIPXN4OVTX/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TKQPEREDUDKGYJMFNFDQVYCVLWDRO2Y2/https://github.com/ibireme/yyjson/security/advisories/GHSA-q4m7-9pcm-fpxhhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6KQ67T4R7QEWURW5NMCCVLTBASL4ECHE/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NNICQVIF7BRYFWYRL3HPVAJIPXN4OVTX/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TKQPEREDUDKGYJMFNFDQVYCVLWDRO2Y2/https://lists.fedoraproject.org/archives/list/[email protected]/message/6KQ67T4R7QEWURW5NMCCVLTBASL4ECHE/https://lists.fedoraproject.org/archives/list/[email protected]/message/NNICQVIF7BRYFWYRL3HPVAJIPXN4OVTX/https://lists.fedoraproject.org/archives/list/[email protected]/message/TKQPEREDUDKGYJMFNFDQVYCVLWDRO2Y2/
2024-02-29
Published