Executive brief
A stack buffer overflow vulnerability exists in the buffer_get function of duc, a disk management tool, where a condition can evaluate to true due to underflow, allowing an out-of-bounds read.
Affected products
- zevv duc
Junglewise Threat Intelligence
CVE-2025-13654 · Severity: high · CVSS 7.5 · Published 2025-12-05
A stack buffer overflow vulnerability exists in the buffer_get function of duc, a disk management tool, where a condition can evaluate to true due to underflow, allowing an out-of-bounds read.