CVE-2025-31160

Name
CVE-2025-31160
Description
atop through 2.11.0 allows local users to cause a denial of service (e.g., assertion failure and application exit) or possibly have unspecified other impact by running certain types of unprivileged processes while a different user runs atop.
NVD Severity
low
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
cve@mitre.org https://github.com/Atoptool/atop
cve@mitre.org https://news.ycombinator.com/item?id=43477057
cve@mitre.org https://news.ycombinator.com/item?id=43485980
cve@mitre.org https://rachelbythebay.com/w/2025/03/26/atop/
af854a3a-2127-422b-91ae-364da2661108 http://www.openwall.com/lists/oss-security/2025/03/26/3
af854a3a-2127-422b-91ae-364da2661108 http://www.openwall.com/lists/oss-security/2025/03/27/1
af854a3a-2127-422b-91ae-364da2661108 http://www.openwall.com/lists/oss-security/2025/03/27/2
af854a3a-2127-422b-91ae-364da2661108 http://www.openwall.com/lists/oss-security/2025/03/27/3
af854a3a-2127-422b-91ae-364da2661108 http://www.openwall.com/lists/oss-security/2025/03/29/1
cve@mitre.org https://blog.bismuth.sh/blog/bismuth-found-the-atop-bug
af854a3a-2127-422b-91ae-364da2661108 https://lists.debian.org/debian-lts-announce/2025/04/msg00013.html

Match rules

CPE URI Source package Min version Max version
atop >= 0 <= 2.11.0

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
atop edge-main 2.11.0-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
atop edge-main 2.11.1-r0 Natanael Copa <ncopa@alpinelinux.org> fixed
atop 3.21-main 2.11.1-r0 Natanael Copa <ncopa@alpinelinux.org> fixed