CVE-2025-46613: Race Condition
Published Apr 25, 2025
·Updated
OpenPLC 3 through 64f9c11 has server.cpp Memory Corruption because a thread may access handleConnections arguments after the parent stack frame becomes unavailable.
Affected Software
1 affected component
OpenPLC OpenPLC>=3<64f9c11
Event History
Apr 25, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 AM
DescriptionSeverityWeakness
Oct 7, 57345
Event
via FIRST·11:20 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-46613?
CVE-2025-46613 is classified as a high-severity vulnerability due to potential memory corruption issues.
2
How do I fix CVE-2025-46613?
To mitigate CVE-2025-46613, update OpenPLC to a version beyond 64f9c11 that addresses the memory corruption.
3
What type of vulnerability is CVE-2025-46613?
CVE-2025-46613 is a memory corruption vulnerability that can occur when threads access invalid memory after the stack frame is no longer available.
4
Which software versions are affected by CVE-2025-46613?
CVE-2025-46613 affects OpenPLC versions between 3 and 64f9c11 inclusive.
5
What impact does CVE-2025-46613 have on OpenPLC?
CVE-2025-46613 can lead to crashes or unintended behavior in OpenPLC due to memory corruption.