cbcvebase.
CVE-2025-0781
published 2025-01-28

CVE-2025-0781: An attacker can bypass the sandboxing of Nasal scripts and arbitrarily write to any file path that the user has permission to modify at the operating-system…

PriorityP357critical9.9CVSS 3.1
AVNACLPRLUINSCCHIHAH
EPSS
0.34%
26.8th percentile
An attacker can bypass the sandboxing of Nasal scripts and arbitrarily write to any file path that the user has permission to modify at the operating-system level.

Affected

13 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianflightgear< flightgear 1:2020.3.16+dfsg-1+deb12u1 (bookworm)flightgear 1:2020.3.16+dfsg-1+deb12u1 (bookworm)
debiansimgear< flightgear 1:2020.3.16+dfsg-1+deb12u1 (bookworm)flightgear 1:2020.3.16+dfsg-1+deb12u1 (bookworm)
flightgearflightgear>= 0 < 1:2020.3.6+dfsg-1+deb11u11:2020.3.6+dfsg-1+deb11u1
flightgearflightgear>= 0 < 1:2020.3.16+dfsg-1+deb12u11:2020.3.16+dfsg-1+deb12u1
flightgearflightgear>= 0 < 1:2020.3.19+dfsg-11:2020.3.19+dfsg-1
flightgearflightgear>= 0 < 1:2020.3.19+dfsg-11:2020.3.19+dfsg-1
flightgearsimgear<= 2020.3.19
gitlabsimgear
simgearsimgear>= 0 < 1:2020.3.6+dfsg-1+deb11u11:2020.3.6+dfsg-1+deb11u1
simgearsimgear>= 0 < 1:2020.3.16+dfsg-1+deb12u11:2020.3.16+dfsg-1+deb12u1
simgearsimgear>= 0 < 1:2020.3.19+dfsg-11:2020.3.19+dfsg-1
simgearsimgear>= 0 < 1:2020.3.19+dfsg-11:2020.3.19+dfsg-1

CVSS provenance

nvdv3.19.9CRITICALCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
osv9.9CRITICAL
vendor_debian8.6HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.