Stack-based buffer overflow in FreeBSD - CVE-2025-0373

 

Stack-based buffer overflow in FreeBSD - CVE-2025-0373

Published: January 29, 2025 / Updated: July 30, 2026


Vulnerability identifier: #VU140494
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2025-0373
CWE-ID: CWE-121
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to cause a denial of service.

The vulnerability exists due to stack-based buffer overflow in the VOP_VPTOFH() implementation of the cd9660, tarfs, and ext2fs filesystems when handling NFS access to exported filesystems. A remote attacker can mount and access a crafted NFS export to cause a denial of service.

Only 64-bit systems that export a cd9660, tarfs, or ext2fs filesystem via NFS are vulnerable. Further exploitation such as bypassing file permission checks or remote kernel code execution is noted as potentially possible but has not been demonstrated.


Affected software

FreeBSD

How to mitigate CVE-2025-0373

Install security update from vendor's website.


External References

Related Security Bulletins