PT-2025-11056 · Unknown · Sdp Server

Published

2025-03-01

·

Updated

2025-08-27

·

CVE-2025-0075

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: sdp server (affected versions not specified)
Description: A use after free issue exists in the process service search attr req function within sdp server.cc. This could lead to remote code execution without requiring additional privileges or user interaction.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Use After Free

Code Injection

Weakness Enumeration

Related Identifiers

ASB-A-375407167
CVE-2025-0075

Affected Products

Sdp Server