CVE-2025-22867 - Apple ld Arbritary Code Execution in Darwin Go Module
CVE ID : CVE-2025-22867 Published : Feb. 6, 2025, 6:15 p.m. | 1 hour, 29 minutes ago Description : On Darwin, building a Go module which contains CGO can trigger arbitrary code execution when using the Apple version of ld, due to usage of the @executable_path, @loader_path, or @rpath special values in a "#cgo LDFLAGS" directive. This issue only affected go1.24rc2. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...
![CVE-2025-22867 - Apple ld Arbritary Code Execution in Darwin Go Module](https://cdn.cvefeed.io/images/cvefeed.io-new.webp)
Published : Feb. 6, 2025, 6:15 p.m. | 1 hour, 29 minutes ago
Description : On Darwin, building a Go module which contains CGO can trigger arbitrary code execution when using the Apple version of ld, due to usage of the @executable_path, @loader_path, or @rpath special values in a "#cgo LDFLAGS" directive. This issue only affected go1.24rc2.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...