Skip to content

Detection of malicious VHD files for CVE-2025-24985

Notifications You must be signed in to change notification settings

airbus-cert/cve-2025-24985

Repository files navigation

cve-2025-24985

Compute the number of cluster of a VHD file to detect overflow.

Supportted boot sectors:

  • MBR
  • GPT

Usage

python -m cve_2025_24985 -f <path/to/file.vhd>

Setup

Nix

# With direnv:
direnv allow

# Or Without direnv:
nix develop

Peotry

WIP

Docker

WIP

TODO:

  • Auto build libvhdi with poetry
  • Setup poetry install
  • Fix dockerfile with pyvhdi dependency

About

Detection of malicious VHD files for CVE-2025-24985

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published