CVE-2018-25154: The GNU Project | Free Software Foundation, Inc GNU Barcode

Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.

GNU Barcode 0.99 contains a buffer overflow vulnerability in its code 93 encoding process that allows attackers to trigger memory corruption. Attackers can exploit boundary errors during input file processing to potentially execute arbitrary code on the affected system.

Affected products

Published 2025-12-24. Last modified 2026-06-17.