PT-2025-52627 · Unknown · Floooh Sokol

Oneafter

·

Published

2025-12-22

·

Updated

2025-12-22

·

CVE-2025-15013

CVSS v3.1

5.3

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions floooh sokol versions prior to 5d11344150973f15e16d3ec4ee7550a73fb995e0
Description A flaw exists in floooh sokol, specifically within the sg validate pipeline desc function in the sokol gfx.h library. This issue can lead to a stack-based buffer overflow. Exploitation requires local access. A publicly available exploit exists. The product uses a rolling release system, so specific version information for fixes is not disclosed.
Recommendations Apply the patch b95c5245ba357967220c9a860c7578a7487937b0 to resolve this issue.

Exploit

Fix

Stack Overflow

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-15013

Affected Products

Floooh Sokol