Home

Description

NeKernal is a free and open-source operating system stack. Prior to version 0.0.3, there are several memory safety issues that can lead to memory corruption, disk image corruption, denial of service, and potential code execution. These issues stem from unchecked memory operations, unsafe typecasting, and improper input validation. This issue has been patched in version 0.0.3.

PUBLISHED Reserved 2025-06-18 | Published 2025-06-24 | Updated 2025-06-24 | Assigner GitHub_M




HIGH: 8.8CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N

Problem types

CWE-20: Improper Input Validation

CWE-770: Allocation of Resources Without Limits or Throttling

Product status

< 0.0.3
affected

References

github.com/...kernel/security/advisories/GHSA-cmp2-5f6g-mw34

github.com/nekernel-org/nekernel/pull/35

github.com/nekernel-org/nekernel/pull/36

github.com/...ommit/6506875ad0ab210b82a5c4ce227bf851508de17d

github.com/...ommit/6511afbf405c31513bc88ab06bca58218610a994

cve.org (CVE-2025-52568)

nvd.nist.gov (CVE-2025-52568)

Download JSON