PT-2025-51194 · Eclipse · Eclipse Omr

Published

2025-12-15

·

Updated

2025-12-15

·

CVE-2025-14549

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Eclipse OMR versions 0.7.0 through 0.7.x
Description The Eclipse OMR compiler component contains a flaw in how it handles NUL (0x00) characters during charset translation from Latin-compatible charsets (UTF-8, ISO8859-1, ASCII, etc.) to IBM-1047/037 on Z processors. This incorrect handling can lead to the truncation of the output byte array, potentially discarding the first NUL byte and subsequent characters, which may expose a buffer over-read issue.
Recommendations Update to Eclipse OMR version 0.8.0.

Fix

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2025-14549

Affected Products

Eclipse Omr