PT-2025-32723 · Intel · Tinycbor

Published

2025-08-12

·

Updated

2025-08-12

·

CVE-2025-24302

CVSS v3.1

6.7

Medium

VectorAV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: TinyCBOR versions prior to 0.6.1
Description: An uncontrolled recursion issue in some TinyCBOR libraries maintained by Intel(R) before version 0.6.1 may allow an authenticated user to potentially escalate privileges via local access.
Recommendations: Update TinyCBOR to version 0.6.1 or later.

Fix

Uncontrolled Recursion

Weakness Enumeration

Related Identifiers

CVE-2025-24302

Affected Products

Tinycbor