CVE-2025-2177 | libzvbi up to 0.2.43 src/search.c vbi_search_new pat_len integer overflow (GHSA-g7cg-7gw9-v8cf / Nessus ID 233205)
A vulnerability marked as problematic has been reported in libzvbi up to 0.2.43. Impacted is the function vbi_search_new of the file src/search.c. Performing manipulation of the argument pat_len results in integer overflow.
This vulnerability is known as CVE-2025-2177. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
It is suggested to upgrade the affected component.
The code maintainer was informed beforehand about the issues. She reacted very fast and highly professional.