CVE-2025-34451 | rofl0r proxychains-ng up to 4.17 src/libproxychains.c proxy_from_string username/password stack-based overflow (SAID-2025-008 / cc005b7)
A vulnerability marked as critical has been reported in rofl0r proxychains-ng up to 4.17. Affected by this issue is the function proxy_from_string in the library src/libproxychains.c. The manipulation of the argument username/password leads to stack-based buffer overflow.
This vulnerability is documented as CVE-2025-34451. The attack needs to be performed locally. There is not any exploit available.
It is suggested to install a patch to address this issue.