CVE-2019-25679: RealTerm Serial Terminal 2.0.0.70 Buffer Overflow SEH
RealTerm Serial Terminal 2.0.0.70 contains a structured exception handling (SEH) buffer overflow vulnerability in the Echo Port tab that allows local attackers to execute arbitrary code by supplying a malicious payload. Attackers can craft a buffer overflow payload with a POP POP RET gadget chain and shellcode that triggers code execution when pasted into the Port field and the Change button is clicked.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-25679?
The severity of CVE-2019-25679 is rated at high with a score of 8.5.
What type of vulnerability is CVE-2019-25679?
CVE-2019-25679 is a buffer overflow vulnerability in RealTerm Serial Terminal.
How do I fix CVE-2019-25679?
To fix CVE-2019-25679, update RealTerm Serial Terminal to the latest version that addresses this vulnerability.
What impact does CVE-2019-25679 have on systems?
CVE-2019-25679 allows local attackers to execute arbitrary code on affected systems.
Which software is affected by CVE-2019-25679?
CVE-2019-25679 affects RealTerm Serial Terminal version 2.0.0.70.