PT-2026-3086 · Rhapsody · Rhapsody

CVE-2025-13844

·

Publicado

2026-01-13

·

Atualizado

2026-03-03

CVSS v4.0

8.4

Alta

VetorAV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L
Name of the Vulnerable Software and Affected Versions Rapsody (affected versions not specified)
Description A double free issue exists that can lead to heap memory corruption. This occurs when a user imports a malicious project file (SSD file) provided by an attacker. The issue involves freeing the same memory location twice, potentially allowing an attacker to control program execution.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Double Free

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-04460
CVE-2025-13844

Produtos afetados

Rhapsody