CVE-2019-25569: RealTerm Serial Terminal 2.0.0.70 SEH Overflow Crash
RealTerm Serial Terminal 2.0.0.70 contains a stack-based buffer overflow vulnerability in the Echo Port field that allows local attackers to crash the application by triggering a structured exception handler (SEH) chain corruption. Attackers can craft a malicious input string with 268 bytes of padding followed by SEH overwrite values and paste it into the Port field to cause denial of service.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-25569?
CVE-2019-25569 is classified as a high-severity vulnerability due to its potential to crash the application and impact system stability.
How do I fix CVE-2019-25569?
To fix CVE-2019-25569, users should upgrade to a patched version of RealTerm Serial Terminal that addresses the buffer overflow issue.
Who is affected by CVE-2019-25569?
CVE-2019-25569 affects users of RealTerm Serial Terminal version 2.0.0.70, particularly those using the Echo Port feature.
What type of vulnerability is CVE-2019-25569?
CVE-2019-25569 is a stack-based buffer overflow vulnerability that can lead to application crashes through SEH chain corruption.
Can CVE-2019-25569 be exploited remotely?
CVE-2019-25569 requires local access to exploit, meaning that it cannot be exploited remotely by attackers.