PT-2025-52501 · Unknown · Floooh Sokol+1
Oneafter
·
Published
2025-12-19
·
Updated
2025-12-30
·
CVE-2025-14958
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
floooh sokol versions prior to 33e2271c431bf21de001e972f72da17a984da932
Description
A security flaw exists in floooh sokol. The issue resides in the
sg pipeline common init function within the sokol gfx.h library, leading to a heap-based buffer overflow. Local exploitation is possible. The exploit is publicly available. The product employs a rolling release model, meaning specific version details for affected or updated releases are not available.Recommendations
Install the patch 33e2271c431bf21de001e972f72da17a984da932 to address this issue.
Exploit
Fix
Memory Corruption
Heap Based Buffer Overflow
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Floooh Sokol
Sokol Gfx.H