CVE-2025-64129: Zenitel TCIV-3+ Out-of-bounds Write
Published Nov 26, 2025
·Updated
Zenitel TCIV-3+ is vulnerable to an out-of-bounds write vulnerability, which could allow a remote attacker to crash the device.
Affected Software
1 affected componentFixes available
Zenitel TCIV-3+<9.3.3.0
9.3.3.0
Remediation
Information
Zenitel recommends users to upgrade to Version 9.3.3.0 or later https://wiki.zenitel.com/wiki/Downloads#Station_and_Device_Firmware_Package_.28VS-IS.29 .
Event History
Nov 26, 2025
Data Sourced
via ICS·05:50 PM
SeverityWeaknessAffected Software
CVE Published
via MITRE·05:54 PM
Data Sourced
via MITRE·05:54 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-64129?
CVE-2025-64129 is considered a high severity vulnerability that may allow remote attackers to crash the Zenitel TCIV-3+ device.
2
How do I fix CVE-2025-64129?
To fix CVE-2025-64129, upgrade the Zenitel TCIV-3+ to version 9.3.3.0 or later.
3
What type of vulnerability is CVE-2025-64129?
CVE-2025-64129 is classified as an out-of-bounds write vulnerability.
4
Who is affected by CVE-2025-64129?
CVE-2025-64129 affects devices running Zenitel TCIV-3+ up to version 9.3.3.0.
5
What can an attacker do using CVE-2025-64129?
An attacker exploiting CVE-2025-64129 could potentially crash the Zenitel TCIV-3+ device.