{
  "published": "2025-11-14T18:59:36Z",
  "modified": "2026-01-07T00:00:00Z",
  "schema_version": "1.7.5",
  "id": "CGA-66m6-cfxp-jp9m",
  "severity": [
    {
      "type": "CVSS_V3",
      "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N"
    }
  ],
  "upstream": [
    "CVE-2025-4598",
    "GHSA-jx2m-wgq5-5qcj"
  ],
  "references": [
    {
      "type": "WEB",
      "url": "http://seclists.org/fulldisclosure/2025/Jun/9"
    },
    {
      "type": "WEB",
      "url": "https://lists.debian.org/debian-lts-announce/2025/07/msg00022.html"
    },
    {
      "type": "WEB",
      "url": "http://www.openwall.com/lists/oss-security/2025/08/18/3"
    },
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2025:22660"
    },
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2025:22868"
    },
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2025:23227"
    },
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2026:0414"
    },
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2025:23234"
    },
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2026:1652"
    },
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/security/cve/CVE-2025-4598"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2369242"
    },
    {
      "type": "WEB",
      "url": "http://www.openwall.com/lists/oss-security/2025/06/05/1"
    },
    {
      "type": "WEB",
      "url": "http://www.openwall.com/lists/oss-security/2025/06/05/3"
    },
    {
      "type": "WEB",
      "url": "https://access.redhat.com/downloads/content/package-browser/"
    },
    {
      "type": "WEB",
      "url": "https://catalog.redhat.com/software/containers/"
    },
    {
      "type": "WEB",
      "url": "https://cert-portal.siemens.com/productcert/html/ssa-082556.html"
    },
    {
      "type": "WEB",
      "url": "https://www.openwall.com/lists/oss-security/2025/05/29/3"
    },
    {
      "type": "WEB",
      "url": "https://www.openwall.com/lists/oss-security/2025/08/18/3"
    },
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2026:18153"
    },
    {
      "type": "ADVISORY",
      "url": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/4xxx/CVE-2025-4598.json"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4598"
    },
    {
      "type": "PACKAGE",
      "url": "https://github.com/systemd/systemd"
    },
    {
      "type": "ARTICLE",
      "url": "https://blogs.oracle.com/linux/post/analysis-of-cve-2025-4598"
    },
    {
      "type": "ARTICLE",
      "url": "https://ciq.com/blog/the-real-danger-of-systemd-coredump-cve-2025-4598/"
    }
  ],
  "affected": [
    {
      "package": {
        "ecosystem": "Chainguard",
        "name": "linux-aws-6.12-headers",
        "purl": "pkg:apk/chainguard/linux-aws-6.12-headers?arch=aarch64"
      },
      "ranges": [
        {
          "type": "ECOSYSTEM",
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0"
            }
          ]
        }
      ],
      "ecosystem_specific": {
        "components": [
          {
            "component_name": "linux-kernel",
            "component_version": "6.12.49-r0-aws-6.12",
            "component_type": "linux-kernel",
            "component_location": "/boot/vmlinuz-6.12.49-r0-aws-6.12",
            "component_purl": "pkg:generic/linux-kernel/linux-kernel@6.12.49-r0-aws-6.12",
            "latest_event_status": "false_positive_determination",
            "latest_event_timestamp": "2025-10-08T21:37:46Z"
          }
        ]
      }
    }
  ]
}
