Buffer Overflow Vulnerability in CodeChecker by Ericsson
CVE-2025-40843

5.9MEDIUM

Key Information:

Vendor

Ericsson

Vendor
CVE Published:
28 October 2025

What is CVE-2025-40843?

A buffer overflow vulnerability exists in the internal ldlogger library of CodeChecker, which can be executed by the CodeChecker log command. This flaw can potentially allow an attacker to manipulate memory, leading to unexpected behavior or application crashes. All versions up to and including 6.26.1 are affected, making it crucial for users to assess their systems and implement patches or mitigations as soon as possible.

Affected Version(s)

CodeChecker Linux 0 <= 6.26.1

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.