PT-2025-51194 · Eclipse · Eclipse Omr
Published
2025-12-15
·
Updated
2025-12-15
·
CVE-2025-14549
CVSS v3.1
8.1
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Eclipse OMR versions 0.7.0 through 0.7.x
Description
The Eclipse OMR compiler component contains a flaw in how it handles NUL (0x00) characters during charset translation from Latin-compatible charsets (UTF-8, ISO8859-1, ASCII, etc.) to IBM-1047/037 on Z processors. This incorrect handling can lead to the truncation of the output byte array, potentially discarding the first NUL byte and subsequent characters, which may expose a buffer over-read issue.
Recommendations
Update to Eclipse OMR version 0.8.0.
Fix
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Eclipse Omr