PT-2025-39459 · Unknown+1 · Guanxinglu Vlarl+1

Zznq

·

Published

2025-09-25

·

Updated

2025-09-25

·

CVE-2025-10975

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions GuanxingLu vlarl versions prior to 31abc0baf53ef8f5db666a1c882e1ea64def2997
Description A flaw exists in the experiments.robot.bridge.reasoning server::run reasoning server function within the experiments/robot/bridge/reasoning server.py file of the ZeroMQ component. Manipulation of the Message argument leads to deserialization, potentially allowing for remote exploitation. The exploit has been publicly disclosed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Deserialization of Untrusted Data

RCE

Weakness Enumeration

Related Identifiers

CVE-2025-10975

Affected Products

Guanxinglu Vlarl
Zeromq