PT-2025-48068 · Ashlar Vellum · Ashlar-Vellum Lithium+4

Published

2025-11-25

·

Updated

2026-05-12

·

CVE-2025-65085

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Ashlar-Vellum Cobalt versions prior to 12.6.1204.207 Ashlar-Vellum Xenon versions prior to 12.6.1204.207 Ashlar-Vellum Argon versions prior to 12.6.1204.207 Ashlar-Vellum Lithium versions prior to 12.6.1204.207 Ashlar-Vellum Cobalt Share versions prior to 12.6.1204.207
Description A Heap-based Buffer Overflow issue exists in the software. This could allow an attacker to disclose information or execute arbitrary code. A heap-based buffer overflow occurs when a program writes data beyond the allocated memory region on the heap, potentially overwriting adjacent data structures or code.
Recommendations Update Ashlar-Vellum Cobalt to a version later than 12.6.1204.207. Update Ashlar-Vellum Xenon to a version later than 12.6.1204.207. Update Ashlar-Vellum Argon to a version later than 12.6.1204.207. Update Ashlar-Vellum Lithium to a version later than 12.6.1204.207. Update Ashlar-Vellum Cobalt Share to a version later than 12.6.1204.207.

Fix

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-65085

Affected Products

Ashlar-Vellum Argon
Ashlar-Vellum Cobalt
Ashlar-Vellum Cobalt Share
Ashlar-Vellum Lithium
Ashlar-Vellum Xenon