← Back to CVE List
Vulnerability Intelligence Report
Hercules Augeas fa.c re_case_expand null pointer dereference

CVE-2025-2588

A vulnerability has been found in Hercules Augeas 1.14.1 and classified as problematic. This vulnerability affects the function re_case_expand of the file src/fa.c. The manipulation of the argument re leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

No Active Exploit Signals
CVSS Base Score
4.8
MEDIUM
EPSS Probability:0.24%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Weaknesses (CWE)

CWE-476 ↗NULL Pointer Dereference
CWE-404 ↗Denial of Service

Affected Products & Versions

Vendor Product Affected Versions
Hercules Augeas 1.14.1 (affected)

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
0.241%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityVulDB · Researcher · Switzerland
Reserved2025-03-21T06:32:24
Published2025-03-21T12:00:10
Last Updated2025-03-21T17:24:55

LINK COPIED TO CLIPBOARD