CVE Vulnerabilities

CVE-2025-54409

NULL Pointer Dereference

Published: Aug 14, 2025 | Modified: Nov 04, 2025
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
5.5 MODERATE
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

AIDE is an advanced intrusion detection environment. From versions 0.13 to 0.19.1, there is a null pointer dereference vulnerability in AIDE. An attacker can crash the program during report printing or database listing after setting extended file attributes with an empty attribute value or with a key containing a comma. A local user might exploit this to cause a local denial of service. This issue has been patched in version 0.19.2. A workaround involves removing xattrs group from rules matching files on affected file systems.

Weakness

The product dereferences a pointer that it expects to be valid but is NULL.

Affected Software

NameVendorStart VersionEnd Version
Advanced_intrusion_detection_environmentAdvanced_intrusion_detection_environment_project0.13 (including)0.19.2 (excluding)
AideUbuntudevel*
AideUbuntuesm-infra-legacy/trusty*
AideUbuntuesm-infra/bionic*
AideUbuntuesm-infra/focal*
AideUbuntuesm-infra/xenial*
AideUbuntujammy*
AideUbuntunoble*
AideUbuntuplucky*
AideUbuntuupstream*

Potential Mitigations

References