Metrics
Affected Vendors & Products
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | epss 
 | epss 
 | 
Wed, 02 Jul 2025 19:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Gabime Gabime spdlog | |
| CPEs | cpe:2.3:a:gabime:spdlog:*:*:*:*:*:*:*:* | |
| Vendors & Products | Gabime Gabime spdlog | 
Tue, 17 Jun 2025 16:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
Tue, 17 Jun 2025 04:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | |
| Metrics | threat_severity 
 | threat_severity 
 | 
Mon, 16 Jun 2025 21:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A vulnerability, which was classified as problematic, was found in spdlog up to 1.15.1. This affects the function scoped_padder in the library include/spdlog/pattern_formatter-inl.h. The manipulation leads to resource consumption. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. Upgrading to version 1.15.2 is able to address this issue. The identifier of the patch is 10320184df1eb4638e253a34b1eb44ce78954094. It is recommended to upgrade the affected component. | |
| Title | spdlog pattern_formatter-inl.h scoped_padder resource consumption | |
| Weaknesses | CWE-400 CWE-404 | |
| References |  | 
 | 
| Metrics | cvssV2_0 
 
 
 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: VulDB
Published: 2025-06-16T21:31:06.961Z
Updated: 2025-06-17T15:24:14.082Z
Reserved: 2025-06-15T10:57:52.905Z
Link: CVE-2025-6140
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-06-17T15:24:05.556Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2025-06-16T22:16:41.250
Modified: 2025-07-02T18:58:42.230
Link: CVE-2025-6140
 Redhat
                        Redhat