CVE-2025-4802 is a high-severity vulnerability affecting GNU C Library (glibc) versions 2.27 to 2.38, allowing untrusted LD_LIBRARY_PATH environment variable manipulation. This flaw enables attackers to load malicious dynamically shared libraries within statically compiled setuid binaries that utilize dlopen, including internal calls or NSS functions. With a CVSS score of 7.8, it presents a high risk for confidentiality, integrity, and availability, requiring user interaction but with low attack complexity. While there is no known active exploitation, public exploit code, or KEV listing, it has garnered some community discussion and media coverage, indicating awareness of its potential impact.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 2.27, <= 2.38CPE matchmatch criteria | cpe:2.3:a:gnu:glibc:*:*:*:*:*:*:*:* | ||
>= 2.27, < 2.39CPE match | cpe:2.3:a:gnu:glibc:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
HP ThinPro 8.1 SP8 Security Updates
Oct 27, 2025HP ThinPro 8.1 SP8 Security Updates
Oct 27, 2025HP ThinPro 8.1 SP8 Security Updates
Oct 27, 2025glibc: static setuid binary dlopen may incorrectly search LD_LIBRARY_PATH
May 16, 2025Untrusted LD_LIBRARY_PATH environment variable vulnerability in the GNU C Library version 2.27 to 2.38 allows attacker controlled loading of dynamically shared library in statically compiled setuid binaries that call dlopen (including internal dlopen calls after setlocale or calls to NSS functions such as getaddrinfo).
May 13, 2025