CVE-2025-8734

Name
CVE-2025-8734
Description
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: Additional analysis indicates that the files referenced in the stack trace do not exist in Bison.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
exploit https://drive.google.com/file/d/123Qe44FaC-GP88dWNl9-6H4jLWUcXYNZ/view?usp=drive_link
issue-tracking https://github.com/akimd/bison/issues/115
signature https://vuldb.com/?ctiid.319230
vdb-entry https://vuldb.com/?id.319230
third-party-advisory https://vuldb.com/?submit.622300
product https://www.gnu.org/
af854a3a-2127-422b-91ae-364da2661108 https://www.openwall.com/lists/oss-security/2025/10/27/12

Match rules

CPE URI Source package Min version Max version

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
bison edge-main 3.8.2-r2 Celeste <cielesti@protonmail.com> possibly vulnerable
bison edge-main 3.8.2-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
bison 3.22-main 3.8.2-r2 Celeste <cielesti@protonmail.com> possibly vulnerable
bison 3.21-main 3.8.2-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
bison 3.20-main 3.8.2-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
bison 3.19-main 3.8.2-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable