Home

Description

An out-of-bounds read vulnerability exists in the Nex parsing functionality of The Biosig Project libbiosig 3.9.0 and Master Branch (35a819fa). A specially crafted .nex file can lead to an information leak. An attacker can provide a malicious file to trigger this vulnerability.

PUBLISHED Reserved 2025-07-23 | Published 2025-08-25 | Updated 2025-08-26 | Assigner talos




HIGH: 8.2CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H

Problem types

CWE-125: Out-of-bounds Read

Product status

3.9.0
affected

Master Branch (35a819fa)
affected

Credits

Discovered by Mark Bereza and Lilith >_> of Cisco Talos.

References

talosintelligence.com/vulnerability_reports/TALOS-2025-2238

cve.org (CVE-2025-52461)

nvd.nist.gov (CVE-2025-52461)

Download JSON