CVE-2025-12424: Privilege Escalation through SUID-bit Binary
Published Oct 28, 2025
·Updated
Privilege Escalation through SUID-bit Binary.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 .
Affected Software
6 affected components
BLU IC2<=1.19.5
BLU IC4<=1.19.5
All of the following
Azure-access Blu-ic2 Firmware<1.20
Azure-access Blu-ic2
All of the following
Azure-access Blu-ic4 Firmware<1.20
Azure-access Blu-ic4
Event History
Oct 28, 2025
CVE Published
via MITRE·06:18 PM
Data Sourced
via MITRE·06:18 PM
DescriptionWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-12424?
CVE-2025-12424 has a high severity rating due to its potential for privilege escalation.
2
How do I fix CVE-2025-12424?
To fix CVE-2025-12424, you should update the affected BLU IC2 and BLU IC4 products to versions later than 1.19.5.
3
What impact does CVE-2025-12424 have?
CVE-2025-12424 allows an attacker to gain elevated privileges on affected BLU devices.
4
Which versions of BLU IC2 and BLU IC4 are affected by CVE-2025-12424?
CVE-2025-12424 affects BLU IC2 and BLU IC4 versions up to and including 1.19.5.
5
What is the nature of the vulnerability in CVE-2025-12424?
CVE-2025-12424 is a privilege escalation vulnerability caused by a misconfigured SUID-bit binary.