UBUNTU-CVE-2025-29481

Source
https://ubuntu.com/security/CVE-2025-29481
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-29481.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2025-29481
Related
Published
2025-04-07T20:15:00Z
Modified
2025-04-23T15:06:47Z
Summary
[none]
Details

Buffer Overflow vulnerability in libbpf 1.5.0 allows a local attacker to execute arbitrary code via the bpfobjectinitprog` function of libbpf.

References

Affected packages

Ubuntu:Pro:16.04:LTS / dwarves-dfsg

Package

Name
dwarves-dfsg
Purl
pkg:deb/ubuntu/dwarves-dfsg@1.10-2.1?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.10-2ubuntu1
1.10-2.1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:18.04:LTS / dwarves-dfsg

Package

Name
dwarves-dfsg
Purl
pkg:deb/ubuntu/dwarves-dfsg@1.21-0ubuntu1~18.04.1+esm1?arch=source&distro=esm-apps/bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.10-2.1
1.10-2.1build1
1.21-0ubuntu1~18.04
1.21-0ubuntu1~18.04.1+esm1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:20.04:LTS / dwarves-dfsg

Package

Name
dwarves-dfsg
Purl
pkg:deb/ubuntu/dwarves-dfsg@1.21-0ubuntu1~20.04.1?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.15-1
1.15-2
1.21-0ubuntu1~20.04
1.21-0ubuntu1~20.04.1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:20.04:LTS / libbpf

Package

Name
libbpf
Purl
pkg:deb/ubuntu/libbpf@0.5.0-1~ubuntu20.04.1?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.5.0-1~ubuntu20.04.1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:22.04:LTS / libbpf

Package

Name
libbpf
Purl
pkg:deb/ubuntu/libbpf@0.5.0-1ubuntu22.04.1?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.4.0-1ubuntu1
0.5.0-1
0.5.0-1ubuntu22.04.1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:24.10 / libbpf

Package

Name
libbpf
Purl
pkg:deb/ubuntu/libbpf@1.4.5-1?arch=source&distro=oracular

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.3.0-2build2
1.4.1-1
1.4.2-1
1.4.3-1
1.4.5-1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:24.04:LTS / libbpf

Package

Name
libbpf
Purl
pkg:deb/ubuntu/libbpf@1.3.0-2build2?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.2.2-2
1.3.0-2
1.3.0-2build1
1.3.0-2build2

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:25.04 / libbpf

Package

Name
libbpf
Purl
pkg:deb/ubuntu/libbpf@1.5.0-2?arch=source&distro=plucky

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.4.5-1
1.4.6-1
1.5.0-1
1.5.0-2

Ecosystem specific

{
    "ubuntu_priority": "medium"
}