CVE-2025-15536

A weakness has been identified in BYVoid OpenCC up to 1.1.9. This vulnerability affects the function opencc::MaxMatchSegmentation of the file src/MaxMatchSegmentation.cpp. This manipulation causes heap-based buffer overflow. The attack is restricted to local execution. The exploit has been made available to the public and could be used for attacks. Patch name: 345c9a50ab07018f1b4439776bad78a0d40778ec. To fix this issue, it is recommended to deploy a patch.
Configurations

Configuration 1 (hide)

cpe:2.3:a:byvoid:open_chinese_convert:*:*:*:*:*:*:*:*

History

23 Feb 2026, 09:16

Type Values Removed Values Added
References
  • () https://github.com/BYVoid/OpenCC/ -
References () https://github.com/BYVoid/OpenCC/issues/997 - Exploit, Patch, Issue Tracking () https://github.com/BYVoid/OpenCC/issues/997 - Exploit, Issue Tracking, Patch

06 Feb 2026, 20:29

Type Values Removed Values Added
References () https://github.com/BYVoid/OpenCC/commit/345c9a50ab07018f1b4439776bad78a0d40778ec - () https://github.com/BYVoid/OpenCC/commit/345c9a50ab07018f1b4439776bad78a0d40778ec - Patch
References () https://github.com/BYVoid/OpenCC/issues/997 - () https://github.com/BYVoid/OpenCC/issues/997 - Exploit, Patch, Issue Tracking
References () https://github.com/BYVoid/OpenCC/pull/1005 - () https://github.com/BYVoid/OpenCC/pull/1005 - Issue Tracking, Patch
References () https://github.com/oneafter/1222/blob/main/repro - () https://github.com/oneafter/1222/blob/main/repro - Product
References () https://vuldb.com/?ctiid.341708 - () https://vuldb.com/?ctiid.341708 - Permissions Required, VDB Entry
References () https://vuldb.com/?id.341708 - () https://vuldb.com/?id.341708 - Third Party Advisory, VDB Entry
References () https://vuldb.com/?submit.733347 - () https://vuldb.com/?submit.733347 - Exploit, Third Party Advisory, VDB Entry
First Time Byvoid
Byvoid open Chinese Convert
CWE CWE-787
CPE cpe:2.3:a:byvoid:open_chinese_convert:*:*:*:*:*:*:*:*

20 Jan 2026, 18:16

Type Values Removed Values Added
References () https://github.com/BYVoid/OpenCC/issues/997 - () https://github.com/BYVoid/OpenCC/issues/997 -

18 Jan 2026, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-18 09:15

Updated : 2026-02-23 09:16


NVD link : CVE-2025-15536

Mitre link : CVE-2025-15536

CVE.ORG link : CVE-2025-15536


JSON object : View

Products Affected

byvoid

  • open_chinese_convert
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-122

Heap-based Buffer Overflow

CWE-787

Out-of-bounds Write