PT-2025-35095 · Spim+1 · Spim+1

Giles-One

·

Published

2025-08-28

·

Updated

2025-08-28

·

CVE-2025-29364

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L
Name of the Vulnerable Software and Affected Versions spimsimulator spim versions prior to 9.1.24
Description spimsimulator spim versions prior to 9.1.24 are susceptible to a buffer overflow in the READ SYSCALL and WRITE SYSCALL system calls. The application’s verification of starting and ending addresses for memory read/write operations can be bypassed by configuring these addresses to point to different memory segments within the virtual machine.
Recommendations Update spimsimulator spim to version 9.1.24 or later.

Exploit

Fix

Stack Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-29364

Affected Products

Debian
Spim