Junglewise Threat Intelligence

CVE-2025-13654: A stack buffer overflow vulnerability exists in the buffer_get function of duc, a disk management tool, where a condition can evaluate to tr

CVE-2025-13654 · Severity: high · CVSS 7.5 · Published 2025-12-05

Executive brief

A stack buffer overflow vulnerability exists in the buffer_get function of duc, a disk management tool, where a condition can evaluate to true due to underflow, allowing an out-of-bounds read.

Affected products

  • zevv duc