PT-2025-26691 · Nekernal · Nekernal

0Xf00Sec

·

Published

2025-06-24

·

Updated

2025-06-24

·

CVE-2025-52568

CVSS v4.0

8.8

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions: NeKernal versions prior to 0.0.3
Description: The issue is related to memory safety problems that can cause memory corruption, disk image corruption, denial of service, and potential code execution. These problems arise from unchecked memory operations, unsafe typecasting, and improper input validation.
Recommendations: For versions prior to 0.0.3, update to version 0.0.3 to resolve the issue. As a temporary workaround, consider implementing additional input validation and memory operation checks to minimize the risk of exploitation. Restrict access to sensitive operations to prevent potential code execution until the update is applied.

Exploit

Fix

DoS

Allocation of Resources Without Limits

RCE

Weakness Enumeration

Related Identifiers

CVE-2025-52568
GHSA-CMP2-5F6G-MW34

Affected Products

Nekernal