CNNVD-202512-2517 Information

CNNVD ID

CNNVD-202512-2517

CVE-2025-14606

  • CNNVD Published: 2025-12-13

Description (Chinese)

Tiny RDM是Lykin个人开发者的一个桌面管理器。 Tiny RDM 1.2.5及之前版本存在代码问题漏洞,该漏洞源于Pickle Decoding组件中pickle_convert.go文件的pickle.loads函数存在反序列化问题,可能导致远程攻击。

Description (English)

Tiny RDM is a desktop manager for Lykin personal developers. Tiny RDM 1.2.5 and previous versions had a code problem loophole, which originated in the Pickle Decoding component from the Pickle convert.go file’s Pickle.loads function, which had inverse sequence problems and could lead to long-range attacks.

Hazard Level

High

Vulnerability Type

代码问题

Affected Vendor

个人开发者

Published

2025-12-13

Last Modified

2026-02-24

References

https://github.com/tiny-craft/tiny-rdm/issues/512 https://vuldb.com/?ctiid.336282 https://vuldb.com/?id.336282 https://vuldb.com/?submit.704138 https://access.redhat.com/security/cve/cve-2025-14606

Share on: