PT-2025-52627 · Unknown · Floooh Sokol
Oneafter
·
Published
2025-12-22
·
Updated
2025-12-22
·
CVE-2025-15013
CVSS v3.1
5.3
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
floooh sokol versions prior to 5d11344150973f15e16d3ec4ee7550a73fb995e0
Description
A flaw exists in floooh sokol, specifically within the
sg validate pipeline desc function in the sokol gfx.h library. This issue can lead to a stack-based buffer overflow. Exploitation requires local access. A publicly available exploit exists. The product uses a rolling release system, so specific version information for fixes is not disclosed.Recommendations
Apply the patch b95c5245ba357967220c9a860c7578a7487937b0 to resolve this issue.
Exploit
Fix
Stack Overflow
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Floooh Sokol