PT-2025-28827 · 9Fans · Plan9Port

·

CVE-2025-7208

·

Published

2025-07-09

·

Updated

2026-02-02

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: plan9port versions prior to 9da5b44
Description: A critical vulnerability exists in the edump function within the /src/plan9port/src/libsec/port/x509.c library. Manipulation of this function leads to a heap-based buffer overflow. The exploit for this issue has been publicly disclosed and may be actively exploited. This product utilizes a rolling release model, therefore specific version details for affected and updated releases are unavailable.
Recommendations: Apply the patch with identifier b3e06559475b0130a7a2fb56ac4d131d13d2012f to address this issue.

Exploit

Fix

Heap Based Buffer Overflow

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-7208

Affected Products

Plan9Port