CVE-2018-25154: The GNU Project | Free Software Foundation, Inc GNU Barcode
Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.
GNU Barcode 0.99 contains a buffer overflow vulnerability in its code 93 encoding process that allows attackers to trigger memory corruption. Attackers can exploit boundary errors during input file processing to potentially execute arbitrary code on the affected system.
Affected products
- The GNU Project | Free Software Foundation, Inc GNU Barcode: version 0.99 only
Published 2025-12-24. Last modified 2026-06-17.