{"id":"CVE-2025-13654","summary":"CVE-2025-13654","details":"A stack buffer overflow vulnerability exists in the buffer_get function of duc, a disk management tool, where a condition can evaluate to true due to underflow, allowing an out-of-bounds read.","modified":"2026-08-12T14:52:27.544042Z","published":"2025-12-05T12:42:21.027Z","related":["openSUSE-SU-2025:15835-1"],"database_specific":{"cna_assigner":"certcc","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/13xxx/CVE-2025-13654.json"},"references":[{"type":"WEB","url":"https://github.com/zevv/duc/releases/tag/1.4.6"},{"type":"WEB","url":"https://hackingbydoing.wixsite.com/hackingbydoing/post/stack-buffer-overflow-in-duc"},{"type":"WEB","url":"https://kb.cert.org/vuls/id/441887"},{"type":"WEB","url":"https://www.kb.cert.org/vuls/id/441887"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/13xxx/CVE-2025-13654.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-13654"},{"type":"FIX","url":"https://github.com/zevv/duc/commit/8638c4365ffd9e1966bdef8af6339dbee8c17e66"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/zevv/duc","events":[{"introduced":"0"},{"fixed":"6f9b6c4a3d5b74afb150ddf3e64207f7685f5470"},{"fixed":"8638c4365ffd9e1966bdef8af6339dbee8c17e66"}],"database_specific":{"cpe":"cpe:2.3:a:zevv:duc:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"1.4.6"}],"source":["CPE_RANGE","REFERENCES"]}}],"versions":["1.4.5","1.4.4","1.3.3","1.3.2","1.3.1","1.3","1.2","1.1","1.0-rc1"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-13654.json","vanir_signatures_modified":"2026-08-12T14:52:27Z","vanir_signatures":[{"id":"CVE-2025-13654-76742b19","signature_type":"Line","signature_version":"v1","source":"https://github.com/zevv/duc/commit/8638c4365ffd9e1966bdef8af6339dbee8c17e66","target":{"file":"src/libduc/buffer.c"},"deprecated":false,"digest":{"line_hashes":["39289255876773731139160369832676406208","163409178817594712516717372038319009126","233980186272540327680530445336009202524","232792614342879378378783240625819822636"],"threshold":0.9}},{"signature_version":"v1","source":"https://github.com/zevv/duc/commit/8638c4365ffd9e1966bdef8af6339dbee8c17e66","target":{"file":"src/libduc/buffer.c","function":"buffer_get"},"deprecated":false,"digest":{"function_hash":"202953349293003004385644582668182201625","length":243},"id":"CVE-2025-13654-86865cd4","signature_type":"Function"}]}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}