CVE-2025-36930
published 2025-12-11CVE-2025-36930: In GetHostAddress of gxp_buffer.h, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with…
high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
In GetHostAddress of gxp_buffer.h, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| msrc | azl3_kernel_6.6.29.1-5_on_azure_linux_3.0 | — | — |
| msrc | azl3_kernel_6.6.35.1-4_on_azure_linux_3.0 | — | — |