PT-2025-52501 · Unknown · Floooh Sokol+1

Oneafter

·

Published

2025-12-19

·

Updated

2025-12-30

·

CVE-2025-14958

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions floooh sokol versions prior to 33e2271c431bf21de001e972f72da17a984da932
Description A security flaw exists in floooh sokol. The issue resides in the sg pipeline common init function within the sokol gfx.h library, leading to a heap-based buffer overflow. Local exploitation is possible. The exploit is publicly available. The product employs a rolling release model, meaning specific version details for affected or updated releases are not available.
Recommendations Install the patch 33e2271c431bf21de001e972f72da17a984da932 to address this issue.

Exploit

Fix

Memory Corruption

Heap Based Buffer Overflow

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-14958

Affected Products

Floooh Sokol
Sokol Gfx.H