CVE-2025-52930: Buffer Overflow
A memory corruption vulnerability exists in the BMPv3 RLE Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decompressing the image data from a specially crafted .bmp file, a heap-based buffer overflow can occur which allows for remote code execution. An attacker will need to convince the library to read a file to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-52930?
CVE-2025-52930 is classified as a critical vulnerability due to its potential for remote code execution.
How do I fix CVE-2025-52930?
To fix CVE-2025-52930, update to the latest version of the SAIL Image Decoding Library where the vulnerability is patched.
What types of attacks can exploit CVE-2025-52930?
CVE-2025-52930 can be exploited through specially crafted BMP files that induce a heap-based buffer overflow.
Which software is affected by CVE-2025-52930?
CVE-2025-52930 affects the SAIL Image Decoding Library version 0.9.8.
What are the possible consequences of exploiting CVE-2025-52930?
Exploitation of CVE-2025-52930 may allow an attacker to execute arbitrary code on the affected system.