CVE-2025-29625: A buffer overflow vulnerability in Astrolog v7.70 allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via an overly long...

Description

A buffer overflow vulnerability in Astrolog v7.70 allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via an overly long environment variable passed to FileOpen function.

Classification

CVE ID: CVE-2025-29625

Affected Products

Vendor: n/a

Product: n/a

Stakeholder-Specific Vulnerability Categorization (SSVC)

SSVC Exploitation: poc

SSVC Technical Impact: total

SSVC Automatable: false

References

https://nvd.nist.gov/vuln/detail/CVE-2025-29625
https://github.com/CruiserOne/Astrolog/issues/25
https://blog.reodus.com/posts/cve-2025-29625/

Timeline