CVE-2025-5222

A stack buffer overflow was found in Internationl components for unicode (ICU ). While running the genrb binary, the 'subtag' struct overflowed at the SRBRoot::addTag function. This issue may lead to memory corruption and local arbitrary code execution.
Configurations

Configuration 1 (hide)

cpe:2.3:a:unicode:international_components_for_unicode:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-05-27 21:15

Updated : 2025-08-08 14:55


NVD link : CVE-2025-5222

Mitre link : CVE-2025-5222

CVE.ORG link : CVE-2025-5222


JSON object : View

Products Affected

unicode

  • international_components_for_unicode
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')