https://seclists.org/oss-sec/2025/q3/110: CVE-2025-54409 - aide (>= 0.13 <= 0.19.1): null pointer defence after ading incorctly encoded xattr attributes from database (local DoS)
Published Aug 14, 2025
·Updated
Affected Software
1 affected component
aide aide>=0.13<0.19.1
Frequently Asked Questions
1
What is the severity of CVE-2025-54409?
CVE-2025-54409 is classified as a local denial of service vulnerability.
2
How do I fix CVE-2025-54409?
To fix CVE-2025-54409, update AIDE to version 0.19.2 or later, which addresses the vulnerability.
3
What versions of AIDE are affected by CVE-2025-54409?
AIDE versions from 0.13 to 0.19.1 are affected by CVE-2025-54409.
4
What type of attack can exploit CVE-2025-54409?
CVE-2025-54409 can be exploited to perform a denial of service attack by crashing the program.
5
Who discovered CVE-2025-54409?
CVE-2025-54409 was discovered by Rajesh Pangare.