CVE-2025-1254: Out-of-bounds Read, Out-of-bounds Write vulnerability in RTI Connext Professional (Recording Service) allows Overflow Buffers, Overread Buffers.
Out-of-bounds Read, Out-of-bounds Write vulnerability in RTI Connext Professional (Recording Service) allows Overflow Buffers, Overread Buffers.This issue affects Connext Professional: from 7.4.0 before 7.5.0, from 7.0.0 before 7.3.0.7, from 6.1.0 before 6.1.2.23, from 6.0.0 before 6.0.1.42.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1254?
CVE-2025-1254 is classified as a high-severity vulnerability due to its potential for buffer overread and overflow, which can lead to unauthorized data access or system crashes.
How do I fix CVE-2025-1254?
To mitigate CVE-2025-1254, upgrade RTI Connext Professional to version 7.5.0 or later, or to versions 7.3.0.7 or later for version 7.0.0, or to version 6.1.2.23 or later for version 6.0.0.
What are the potential impacts of CVE-2025-1254?
The potential impacts of CVE-2025-1254 include data corruption, denial of service, and unauthorized access to sensitive information due to out-of-bounds memory access.
Which versions of RTI Connext Professional are affected by CVE-2025-1254?
CVE-2025-1254 affects RTI Connext Professional versions prior to 7.5.0, 7.3.0.7 for version 7.0.0, and 6.1.2.23 for version 6.0.0.
Is there a patch available for CVE-2025-1254?
Yes, a patch is available by upgrading to the respective non-vulnerable versions for RTI Connext Professional.