Home

Description

SoftEtherVPN 5.02.5187 is vulnerable to Use after Free in the Command.c file via the CheckNetworkAcceptThread function. NOTE: the Supplier disputes this because the use-after-free is not in the VPN software, but is instead in a separate tool that has no untrusted input and runs under the user's own privileges (it is a stress-testing tool for a networking stack).

PUBLISHED Reserved 2025-02-07 | Published 2025-03-12 | Updated 2025-07-19 | Assigner mitre

References

lzydry.github.io/CVE-2025-25568/ exploit

lzydry.github.io/CVE-2025-25568/

filecenter.softether-upload.com/..._79538/CVE-2025-25568.pdf

cve.org (CVE-2025-25568)

nvd.nist.gov (CVE-2025-25568)

Download JSON