CNNVD-202512-3997 Information

CNNVD ID

CNNVD-202512-3997

CVE-2025-15013

  • CNNVD Published: 2025-12-22

Description (Chinese)

Sokol是Andre Weissflog个人开发者的一个平台界面。 Sokol存在安全漏洞,该漏洞源于库sokol_gfx.h中函数_sg_validate_pipeline_desc的错误操作,可能导致栈缓冲区溢出。

Description (English)

Sokol is a platform interface for Andre Weissflog personal developers. Sokol has a security loophole, which stems from the error of the central function sg validate pipeline desc in the library, which could lead to a spill out of the fence.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-12-22

Last Modified

2026-02-24

References

https://github.com/seyhajin/sokol/commit/b95c5245ba357967220c9a860c7578a7487937b0 https://github.com/seyhajin/sokol/pull/246 https://vuldb.com/?ctiid.337719 https://github.com/fl00h/sokol/issues/1404 https://github.com/oneafter/1212/blob/main/stack1 https://vuldb.com/?id.337719 https://vuldb.com/?submit.719820 https://access.redhat.com/security/cve/cve-2025-15013

Share on: