PT-2025-28827 · 9Fans · Plan9Port
Yifan Zhang
·
Published
2025-07-09
·
Updated
2026-02-02
·
CVE-2025-7208
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
plan9port versions prior to 9da5b44
Description:
A critical vulnerability exists in the
edump function within the /src/plan9port/src/libsec/port/x509.c library. Manipulation of this function leads to a heap-based buffer overflow. The exploit for this issue has been publicly disclosed and may be actively exploited. This product utilizes a rolling release model, therefore specific version details for affected and updated releases are unavailable.Recommendations:
Apply the patch with identifier b3e06559475b0130a7a2fb56ac4d131d13d2012f to address this issue.
Exploit
Fix
Heap Based Buffer Overflow
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Plan9Port