PT-2025-5689 · Libcurl+3 · Libcurl+3

·

CVE-2025-0665

·

Published

2025-01-23

·

Updated

2026-05-18

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: libcurl (affected versions not specified)
Description: The issue arises when libcurl wrongly closes the same eventfd file descriptor twice after completing a threaded name resolve and taking down a connection channel. This problem occurs due to incorrect handling of the eventfd file descriptor.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Integer Overflow

Multiple Releases of Same Resource or Handle

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2025-10235
ALT-PU-2025-2425
ALT-PU-2025-2652
AZL-56692
BDU:2025-01585
BDU:2025-02320
CLEANSTART-2026-AY18527
CLEANSTART-2026-BW46578
CLEANSTART-2026-DI23929
CLEANSTART-2026-LQ42192
CLEANSTART-2026-OF85770
CVE-2025-0665
JLSEC-2026-421
MGASA-2025-0123
OPENSUSE-SU-2025:14809-1
SUSE-SU-2025:03198-1
SUSE-SU-2025:20239-1
SUSE-SU-2025_03198-1

Affected Products

Alt Linux
Red Os
Suse
Libcurl