Back

MEDIUM

ckolivas lrzip strtol_l.c __GI_____strtol_l_internal null pointer dereference

Published Aug 24, 2025

Description

A security flaw has been discovered in ckolivas lrzip up to 0.651. This impacts the function __GI_____strtol_l_internal of the file strtol_l.c. Performing manipulation results in null pointer dereference. The attack is only possible with local access. The exploit has been released to the public and may be exploited.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (5)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Aug 24, 2025
Updated Aug 25, 2025
Reserved Aug 24, 2025
CISA Vulnrichment
Updated Aug 25, 2025
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a