CVE-2025-68382: Packetbeat Out-of-bounds Read
Out-of-bounds read (CWE-125) allows an unauthenticated remote attacker to perform a buffer overflow (CAPEC-100) via the NFS protocol dissector, leading to a denial-of-service (DoS) through a reliable process crash when handling truncated XDR-encoded RPC messages.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-68382?
CVE-2025-68382 is considered a high severity vulnerability due to its potential to cause denial-of-service attacks.
How does CVE-2025-68382 affect the Packetbeat application?
CVE-2025-68382 allows an unauthenticated remote attacker to exploit an out-of-bounds read in the Packetbeat application, leading to a crash.
How do I fix CVE-2025-68382?
To fix CVE-2025-68382, ensure you update Packetbeat to the latest security patch that addresses this vulnerability.
What are the risks associated with CVE-2025-68382?
The risks associated with CVE-2025-68382 include the possibility of remote code execution and system instability due to denial-of-service conditions.
Who is affected by CVE-2025-68382?
Users of the Packetbeat application who utilize the NFS protocol are at risk of being affected by CVE-2025-68382.