We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-52568

NeKernal Multiple Memory Corruption Vulnerabilities in mkfs.hefs



Description

NeKernal is a free and open-source operating system stack. Prior to version 0.0.3, there are several memory safety issues that can lead to memory corruption, disk image corruption, denial of service, and potential code execution. These issues stem from unchecked memory operations, unsafe typecasting, and improper input validation. This issue has been patched in version 0.0.3.

Reserved 2025-06-18 | Published 2025-06-24 | Updated 2025-06-24 | Assigner GitHub_M


HIGH: 8.8CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N

Problem types

CWE-20: Improper Input Validation

CWE-770: Allocation of Resources Without Limits or Throttling

Product status

< 0.0.3
affected

References

github.com/...kernel/security/advisories/GHSA-cmp2-5f6g-mw34

github.com/nekernel-org/nekernel/pull/35

github.com/nekernel-org/nekernel/pull/36

github.com/...ommit/6506875ad0ab210b82a5c4ce227bf851508de17d

github.com/...ommit/6511afbf405c31513bc88ab06bca58218610a994

cve.org (CVE-2025-52568)

nvd.nist.gov (CVE-2025-52568)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-52568

Support options

Helpdesk Chat, Email, Knowledgebase