CVE-2025-9300
published 2025-08-21CVE-2025-9300: A vulnerability was found in saitoha libsixel up to 1.10.3. Affected by this issue is the function sixel_debug_print_palette of the file src/encoder.c of the…
PriorityP347high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.22%
13.1th percentile
A vulnerability was found in saitoha libsixel up to 1.10.3. Affected by this issue is the function sixel_debug_print_palette of the file src/encoder.c of the component img2sixel. The manipulation results in stack-based buffer overflow. The attack must be initiated from a local position. The exploit has been made public and could be used. The patch is identified as 316c086e79d66b62c0c4bc66229ee894e4fdb7d1. Applying a patch is advised to resolve this issue.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libsixel | < libsixel 1:1.8.7-1 (forky) | libsixel 1:1.8.7-1 (forky) |
| libsixel_project | libsixel | >= 0 < 1:1.8.7-1 | 1:1.8.7-1 |
| saitoha | libsixel | < 1.8.7 | 1.8.7 |
| saitoha | libsixel | — | — |
| saitoha | libsixel | — | — |
| saitoha | libsixel | — | — |
| saitoha | libsixel | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv4.01.9LOWCVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
nvdv2.04.3MEDIUMAV:L/AC:L/Au:S/C:P/I:P/A:P
osv4.8MEDIUM
vendor_debian4.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2025-9300: A vulnerability was found in saitoha libsixel up to 1
osv·2025-08-21·CVSS 4.8
CVE-2025-9300 [MEDIUM] CVE-2025-9300: A vulnerability was found in saitoha libsixel up to 1
A vulnerability was found in saitoha libsixel up to 1.10.3. Affected by this issue is the function sixel_debug_print_palette of the file src/encoder.c of the component img2sixel. The manipulation results in stack-based buffer overflow. The attack must be initiated from a local position. The exploit has been made public and could be used. The patch is identified as 316c086e79d66b62c0c4bc66229ee894e4fdb7d1. Applying a patch is advised to resolve this issue.
GHSA
GHSA-m23p-3g32-h722: A vulnerability was found in saitoha libsixel up to 1
ghsa_unreviewed·2025-08-21
CVE-2025-9300 [MEDIUM] CWE-119 GHSA-m23p-3g32-h722: A vulnerability was found in saitoha libsixel up to 1
A vulnerability was found in saitoha libsixel up to 1.10.3. Affected by this issue is the function sixel_debug_print_palette of the file src/encoder.c of the component img2sixel. The manipulation results in stack-based buffer overflow. The attack must be initiated from a local position. The exploit has been made public and could be used. The patch is identified as 316c086e79d66b62c0c4bc66229ee894e4fdb7d1. Applying a patch is advised to resolve this issue.
Debian
CVE-2025-9300: libsixel - A vulnerability was found in saitoha libsixel up to 1.10.3. Affected by this iss...
vendor_debian·2025·CVSS 4.8
CVE-2025-9300 [MEDIUM] CVE-2025-9300: libsixel - A vulnerability was found in saitoha libsixel up to 1.10.3. Affected by this iss...
A vulnerability was found in saitoha libsixel up to 1.10.3. Affected by this issue is the function sixel_debug_print_palette of the file src/encoder.c of the component img2sixel. The manipulation results in stack-based buffer overflow. The attack must be initiated from a local position. The exploit has been made public and could be used. The patch is identified as 316c086e79d66b62c0c4bc66229ee894e4fdb7d1. Applying a patch is advised to resolve this issue.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 1:1.8.7-1)
sid: resolved (fixed in 1:1.8.7-1)
trixie: open
No detection rules found.
No public exploits indexed.
Bleepingcomputer
Hackers exploit Cisco SNMP flaw to deploy rootkit on switches
blogs_bleepingcomputer·2025-10-16·CVSS 9.8
CVE-2025-20352 [CRITICAL] Hackers exploit Cisco SNMP flaw to deploy rootkit on switches
## Hackers exploit Cisco SNMP flaw to deploy rootkit on switches
## Bill Toulas
Threat actors exploited a recently patched remote code execution vulnerability (CVE-2025-20352) in Cisco networking devices to deploy a rootkit and target unprotected Linux systems.
The security issue leveraged in the attacks affects the Simple Network Management Protocol (SNMP) in Cisco IOS and IOS XE and leads to RCE if the attacker has root privileges.
According to cybersecurity company Trend Micro, the attacks exploited the flaw in Cisco 9400, 9300, and legacy 3750G series devices and deployed rootkits on "older Linux systems that do not have endpoint detection response solutions."
In the original bulletin for CVE-2025-20352, updated on October 6, Cisco tagged the vulnerability as exploited as a zero d
Trendmicro
Operation Zero Disco: Attackers Exploit Cisco SNMP Vulnerability to Deploy Rootkits
blogs_trendmicro·2025-10-15·CVSS 9.8
CVE-2025-20352 [CRITICAL] Operation Zero Disco: Attackers Exploit Cisco SNMP Vulnerability to Deploy Rootkits
Ausnutzung von Schwachstellen
## Operation Zero Disco: Attackers Exploit Cisco SNMP Vulnerability to Deploy Rootkits
Trend™ Research has uncovered an attack campaign exploiting the Cisco SNMP vulnerability CVE-2025-20352, allowing remote code execution and rootkit deployment on unprotected devices, with impacts observed on Cisco 9400, 9300, and legacy 3750G series.
By: Dove Chiu, Lucien Chuang Oct 15, 2025 Read time: ( words)
Save to Folio
Key takeaways:
Attackers exploited the Cisco SNMP vulnerability (CVE-2025-20352) to deploy Linux rootkits on older, unprotected systems, allowing remote code execution (RCE) and persistent unauthorized access by setting universal passwords and installing hooks into IOSd memory space.
The operation primarily impacted Cisco 9400, 9300, and legacy 37
https://drive.google.com/file/d/1IIvvRFgUQZcySqeoqXXhsxd0HZCjClJ7/view?usp=sharinghttps://github.com/saitoha/libsixel/commit/316c086e79d66b62c0c4bc66229ee894e4fdb7d1https://github.com/saitoha/libsixel/issues/200https://github.com/saitoha/libsixel/issues/200#issuecomment-3178785635https://vuldb.com/?ctiid.320905https://vuldb.com/?id.320905https://vuldb.com/?submit.632366https://github.com/saitoha/libsixel/commit/316c086e79d66b62c0c4bc66229ee894e4fdb7d1https://github.com/saitoha/libsixel/issues/200https://github.com/saitoha/libsixel/issues/200#issuecomment-3178785635https://vuldb.com/?submit.632366
2025-08-21
Published