CVE-2025-48188 | GNU PSPP up to 2.0.1 Rijndael Decrypt data/encrypted-file.c fill_buffer out-of-bounds (EUVD-2025-15546)
A vulnerability classified as problematic has been found in GNU PSPP up to 2.0.1. Affected is the function fill_buffer in the library libPSPP-core.a of the file data/encrypted-file.c of the component Rijndael Decrypt. The manipulation leads to out-of-bounds read.
This vulnerability is traded as CVE-2025-48188. The attack needs to be approached locally. There is no exploit available.