CVE-2025-15382: Client SCP Request Triggers Buffer Overread by 1 Byte
A heap buffer over-read vulnerability exists in the wolfSSHCleanPath() function in wolfSSH. An authenticated remote attacker can trigger the issue via crafted SCP path input containing '/./' sequences, resulting in a heap over read by 1 byte.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15382?
CVE-2025-15382 has been classified with a moderate severity level due to its potential for exploitation by authenticated attackers.
How do I fix CVE-2025-15382?
To fix CVE-2025-15382, update to the latest version of wolfSSH that addresses this heap buffer over-read vulnerability.
What type of vulnerability is CVE-2025-15382?
CVE-2025-15382 is a heap buffer over-read vulnerability that occurs in the wolfSSH_CleanPath() function.
Who can exploit CVE-2025-15382?
CVE-2025-15382 can be exploited by an authenticated remote attacker using crafted SCP path inputs.
What is the impact of CVE-2025-15382?
The impact of CVE-2025-15382 includes potential disclosure of sensitive information due to a heap over-read condition.