Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-1253


Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Stack-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags.This issue affects Connext Professional: from 7.4.0 before 7.5.0, from 7.0.0 before 7.3.0.7, from 6.1.0 before 6.1.2.23, from 6.0.0 before 6.0.1.42, from 5.3.0 before 5.3.*, from 4.5c before 5.2.*.


Published

2025-05-08T09:15:19.233

Last Modified

2025-07-31T15:15:35.943

Status

Modified

Source

3f572a00-62e2-4423-959a-7ea25eff1638

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-120
    CWE-121
  • Type: Primary
    CWE-120

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application rti connext_professional ≤ 5.2.3 Yes
Application rti connext_professional ≤ 5.3.1.45 Yes
Application rti connext_professional ≤ 6.0.1.40 Yes
Application rti connext_professional < 6.1.2.23 Yes
Application rti connext_professional < 7.3.0.7 Yes
Application rti connext_professional < 7.5.0 Yes

References