THREATOPS
THREAT OPSThreat News › [NVD] CVE-2025-4598 (MEDIUM 4.7) — A vulnerability was found in systemd-coredump. This flaw allows an attacker to force a SUID process to crash and replace it with a non-SUID binary to access the original's privileged process coredump, allowing the attacker to read sensitive data, such as /etc/shadow content, load

[NVD] CVE-2025-4598 (MEDIUM 4.7) — A vulnerability was found in systemd-coredump. This flaw allows an attacker to force a SUID process to crash and replace it with a non-SUID binary to access the original's privileged process coredump, allowing the attacker to read sensitive data, such as /etc/shadow content, load

lownvdPublished 2025-05-30

CVE-2025-4598 CVSS: 4.7 MEDIUM Published: 2025-05-30T14:15:23.557

A vulnerability was found in systemd-coredump. This flaw allows an attacker to force a SUID process to crash and replace it with a non-SUID binary to access the original's privileged process coredump, allowing the attacker to read sensitive data, such as /etc/shadow content, loaded by the original process.

A SUID binary or process

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-4598