CVE-2025-52568

Source
https://cve.org/CVERecord?id=CVE-2025-52568
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-52568.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-52568
Aliases
  • GHSA-cmp2-5f6g-mw34
Published
2025-06-24T03:06:12.471Z
Modified
2026-04-10T05:30:40.147710Z
Severity
  • 8.8 (High) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N CVSS Calculator
Summary
NeKernal Multiple Memory Corruption Vulnerabilities in mkfs.hefs
Details

NeKernal is a free and open-source operating system stack. Prior to version 0.0.3, there are several memory safety issues that can lead to memory corruption, disk image corruption, denial of service, and potential code execution. These issues stem from unchecked memory operations, unsafe typecasting, and improper input validation. This issue has been patched in version 0.0.3.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/52xxx/CVE-2025-52568.json",
    "cwe_ids": [
        "CWE-20",
        "CWE-770"
    ],
    "cna_assigner": "GitHub_M"
}
References

Affected packages

Git / github.com/ne-foss-org/ne-kernel

Affected ranges

Type
GIT
Repo
https://github.com/ne-foss-org/ne-kernel
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Type
GIT
Repo
https://github.com/ne-foss-org/ne-kernel
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

0.*
0.0.1-release
0.0.1e-fix
0.0.2
0.0.2e1
0.0.2e2
0.0.2e2-amend
0.0.2e3
1.*
1.0.1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-52568.json"

Git / github.com/nekernel-org/nekernel

Affected ranges

Type
GIT
Repo
https://github.com/nekernel-org/nekernel
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Database specific
{
    "versions": [
        {
            "introduced": "0"
        },
        {
            "fixed": "0.0.3"
        }
    ]
}

Affected versions

0.*
0.0.2
0.0.2e1
0.0.2e2-amend
0.0.2e3
1.*
1.0.1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-52568.json"