CVE-2025-1253: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Stack-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags.
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Stack-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags.This issue affects Connext Professional: from 7.4.0 before 7.5.0, from 7.0.0 before 7.3.0.7, from 6.1.0 before 6.1.2.23, from 6.0.0 before 6.0.1.42, from 5.3.0 before 5.3., from 4.5c before 5.2..
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1253?
CVE-2025-1253 is classified as a buffer overflow vulnerability, which can lead to significant security risks such as arbitrary code execution.
How do I fix CVE-2025-1253?
To remediate CVE-2025-1253, upgrade RTI Connext Professional to version 7.5.0 or higher, or to version 7.3.0.7 or higher respectively.
What versions of RTI Connext Professional are affected by CVE-2025-1253?
CVE-2025-1253 affects RTI Connext Professional versions before 7.5.0, before 7.3.0.7, and versions from 4.5 before 6.1.2.23.
What kind of attacks can CVE-2025-1253 allow?
CVE-2025-1253 can potentially allow attackers to exploit the buffer overflow vulnerability to execute arbitrary code or cause application crashes.
Is there a known exploit for CVE-2025-1253?
As of now, specific exploits for CVE-2025-1253 have not been publicly reported, but the vulnerability presents a risk that should be addressed.