PT-2025-34220 · Cmake+2 · Cmake+2

Xdcao

·

Published

2025-08-21

·

Updated

2026-03-27

·

CVE-2025-9301

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions: cmake version 4.1.20250725-gb5cce23
Description: A reachable assertion issue exists in the cmForEachFunctionBlocker::ReplayItems function within the cmForEachCommand.cxx file. The issue is locally exploitable and has been publicly disclosed.
Recommendations: Install the patch 37e27f71bc356d880c908040cd0cb68fa2c371b8 to address this issue.

Exploit

Fix

Assertion Failure

Weakness Enumeration

Related Identifiers

AZL-66554
AZL-66557
CVE-2025-9301
ECHO-EBD3-697A-CA11
MGASA-2026-0069
OESA-2025-2145
OESA-2025-2146
OESA-2025-2147
OESA-2025-2148
OESA-2025-2254
SUSE-SU-2025:02975-1
SUSE-SU-2025:02976-1
SUSE-SU-2025:03281-1
SUSE-SU-2025:3812-1
SUSE-SU-2025_3812-1

Affected Products

Debian
Suse
Cmake