CVE-2019-25051: Debian Linux

High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.

objstack in GNU Aspell 0.60.8 has a heap-based buffer overflow in acommon::ObjStack::dup_top (called from acommon::StringMap::add and acommon::Config::lookup_list).

Affected products

  • Debian Debian Linux: version 9.0 only; version 10.0 only
  • Fedoraproject Fedora: version 34 only
  • GNU Aspell: version 0.60.8 only

Published 2021-07-20. Last modified 2026-06-17.