CVE-2025-1252: Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags.
Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags.This issue affects Connext Professional: from 7.4.0 before 7.5.0, from 7.0.0 before 7.3.0.7, from 6.1.0 before 6.1.2.23, from 6.0.0 before 6.0.1.42, from 5.3.0 before 5.3., from 4.4d before 5.2..
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1252?
CVE-2025-1252 is classified as a high severity vulnerability due to the potential for a heap-based buffer overflow.
How do I fix CVE-2025-1252?
To mitigate CVE-2025-1252, upgrade RTI Connext Professional to version 7.5.0 or later, 7.3.0.7 or later, or 6.1.2.23 or later.
Which versions of RTI Connext Professional are affected by CVE-2025-1252?
CVE-2025-1252 affects RTI Connext Professional versions from 7.4.0 before 7.5.0, from 7.0.0 before 7.3.0.7, and from 4.4 before 6.1.2.23.
What impact does CVE-2025-1252 have on applications?
CVE-2025-1252 can lead to arbitrary code execution or application crashes due to memory corruption from the buffer overflow.
Is there a workaround for CVE-2025-1252 if I cannot upgrade?
There are no recommended workarounds for CVE-2025-1252; upgrading to a patched version is the best mitigation.