CVE-2025-0838
published 2025-02-21CVE-2025-0838: There exists a heap buffer overflow vulnerable in Abseil-cpp. The sized constructors, reserve(), and rehash() methods of absl::{flat,node}hash{set,map} did not…
PriorityP350critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.58%
44.5th percentile
There exists a heap buffer overflow vulnerable in Abseil-cpp. The sized constructors, reserve(), and rehash() methods of absl::{flat,node}hash{set,map} did not impose an upper bound on their size argument. As a result, it was possible for a caller to pass a very large size that would cause an integer overflow when computing the size of the container's backing store, and a subsequent out-of-bounds memory write. Subsequent accesses to the container might also access out-of-bounds memory. We recommend upgrading past commit 5a0e2cb5e3958dd90bb8569a2766622cb74d90c1
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| abseil | abseil-cpp | < 5a0e2cb5e3958dd90bb8569a2766622cb74d90c1 | 5a0e2cb5e3958dd90bb8569a2766622cb74d90c1 |
| abseil | common_libraries | < 20250127.0 | 20250127.0 |
| debian | abseil | < abseil 20220623.1-1+deb12u1 (bookworm) | abseil 20220623.1-1+deb12u1 (bookworm) |
| debian | debian_linux | — | — |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv4.05.9MEDIUMCVSS:4.0/AV:A/AC:H/AT:P/PR:L/UI:A/VC:L/VI:H/VA:L/SC:L/SI:H/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
osv5.9MEDIUM
vendor_debian5.9MEDIUM
vendor_redhat5.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Abseil vulnerability
vendor_ubuntu·2025-05-12
CVE-2025-0838 Abseil vulnerability
Title: Abseil vulnerability
Summary: Abseil could be made to crash if it received specially crafted input.
It was discovered that Abseil incorrectly handled memory with the upper
bound of the size argument. An attacker could possibly use this issue to
cause a denial of service or memory corruption.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
abseil-cpp: Heap Buffer overflow in Abseil
vendor_redhat·2025-02-21·CVSS 5.9
CVE-2025-0838 [MEDIUM] CWE-190 abseil-cpp: Heap Buffer overflow in Abseil
abseil-cpp: Heap Buffer overflow in Abseil
There exists a heap buffer overflow vulnerable in Abseil-cpp. The sized constructors, reserve(), and rehash() methods of absl::{flat,node}hash{set,map} did not impose an upper bound on their size argument. As a result, it was possible for a caller to pass a very large size that would cause an integer overflow when computing the size of the container's backing store, and a subsequent out-of-bounds memory write. Subsequent accesses to the container might also access out-of-bounds memory. We recommend upgrading past commit 5a0e2cb5e3958dd90bb8569a2766622cb74d90c1
A flaw was found in Abseil-cpp. This vulnerability allows an attacker to cause an out-of-bounds memory write and potential subsequent out-of-bounds memory access via passing a very large s
Debian
CVE-2025-0838: abseil - There exists a heap buffer overflow vulnerable in Abseil-cpp. The sized construc...
vendor_debian·2025·CVSS 5.9
CVE-2025-0838 [MEDIUM] CVE-2025-0838: abseil - There exists a heap buffer overflow vulnerable in Abseil-cpp. The sized construc...
There exists a heap buffer overflow vulnerable in Abseil-cpp. The sized constructors, reserve(), and rehash() methods of absl::{flat,node}hash{set,map} did not impose an upper bound on their size argument. As a result, it was possible for a caller to pass a very large size that would cause an integer overflow when computing the size of the container's backing store, and a subsequent out-of-bounds memory write. Subsequent accesses to the container might also access out-of-bounds memory. We recommend upgrading past commit 5a0e2cb5e3958dd90bb8569a2766622cb74d90c1
Scope: local
bookworm: resolved (fixed in 20220623.1-1+deb12u1)
bullseye: resolved (fixed in 0~20200923.3-2+deb11u1)
forky: resolved (fixed in 20240722.0-3)
sid: resolved (fixed in 20240722.0-3)
trixie: resolved (fixed in 20240722.0-
GHSA
GHSA-m9gf-vf48-rg58: There exists a heap buffer overflow vulnerable in Abseil-cpp
ghsa_unreviewed·2025-02-21
CVE-2025-0838 [MEDIUM] CWE-190 GHSA-m9gf-vf48-rg58: There exists a heap buffer overflow vulnerable in Abseil-cpp
There exists a heap buffer overflow vulnerable in Abseil-cpp. The sized constructors, reserve(), and rehash() methods of absl::{flat,node}hash{set,map} did not impose an upper bound on their size argument. As a result, it was possible for a caller to pass a very large size that would cause an integer overflow when computing the size of the container's backing store, and a subsequent out-of-bounds memory write. Subsequent accesses to the container might also access out-of-bounds memory. We recommend upgrading past commit 5a0e2cb5e3958dd90bb8569a2766622cb74d90c1
OSV
CVE-2025-0838: There exists a heap buffer overflow vulnerable in Abseil-cpp
osv·2025-02-21·CVSS 5.9
CVE-2025-0838 [MEDIUM] CVE-2025-0838: There exists a heap buffer overflow vulnerable in Abseil-cpp
There exists a heap buffer overflow vulnerable in Abseil-cpp. The sized constructors, reserve(), and rehash() methods of absl::{flat,node}hash{set,map} did not impose an upper bound on their size argument. As a result, it was possible for a caller to pass a very large size that would cause an integer overflow when computing the size of the container's backing store, and a subsequent out-of-bounds memory write. Subsequent accesses to the container might also access out-of-bounds memory. We recommend upgrading past commit 5a0e2cb5e3958dd90bb8569a2766622cb74d90c1
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-02-21
Published