CVE-2025-10685: HTTP POST with specific higher content length leads into heap corruption
Heap-based buffer overflow vulnerability in Softing Industrial Automation GmbH smartLink SW-PN and smartLink SW-HT (Webserver modules) allows overflow buffers.This issue affects:
smartLink SW-PN: through 1.03
smartLink SW-HT: through 1.42
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-10685?
CVE-2025-10685 is classified as a heap-based buffer overflow vulnerability that can potentially allow attackers to corrupt memory.
How do I fix CVE-2025-10685?
To fix CVE-2025-10685, users should update to the latest version of smartLink SW-PN beyond 1.03 or smartLink SW-HT beyond 1.42.
What products are affected by CVE-2025-10685?
CVE-2025-10685 affects Softing Industrial Automation GmbH's smartLink SW-PN versions up to 1.03 and smartLink SW-HT versions up to 1.42.
What type of vulnerability is CVE-2025-10685?
CVE-2025-10685 is a heap-based buffer overflow vulnerability caused by HTTP POST requests with specific higher content lengths.
Who is the vendor for affected products in CVE-2025-10685?
The vendor for the affected products in CVE-2025-10685 is Softing Industrial Automation GmbH.