CVE-2019-25570: RealTerm Serial Terminal 2.0.0.70 Denial of Service via Port Field
RealTerm Serial Terminal 2.0.0.70 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Port field. Attackers can paste a buffer of 1000 characters into the Port input field and click the open button to trigger a crash.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-25570?
CVE-2019-25570 is classified as a denial of service vulnerability that can crash the RealTerm Serial Terminal application.
How do I fix CVE-2019-25570?
To mitigate CVE-2019-25570, avoid inputting excessively long strings in the Port field of RealTerm Serial Terminal 2.0.0.70.
Who is affected by CVE-2019-25570?
Users of RealTerm Serial Terminal version 2.0.0.70 are affected by CVE-2019-25570.
Can CVE-2019-25570 be exploited remotely?
CVE-2019-25570 requires local access to exploit, as it relies on inputting a long string in the application interface.
What products are impacted by CVE-2019-25570?
The only impacted product identified is RealTerm Serial Terminal version 2.0.0.70.