CVE-2025-46713

Sandboxie is a sandbox-based isolation software for 32-bit and 64-bit Windows NT-based operating systems. Starting in version 0.0.1 and prior to 1.15.12, API_SET_SECURE_PARAM may have an arithmetic overflow deep in the memory allocation subsystem that would lead to a smaller allocation than requested, and a buffer overflow. Version 1.15.12 fixes the issue.
Configurations

No configuration.

History

23 May 2025, 15:55

Type Values Removed Values Added
Summary
  • (es) Sandboxie es un software de aislamiento basado en la sandbox para sistemas operativos Windows NT de 32 y 64 bits. A partir de la versión 0.0.1 y anteriores a la 1.15.12, API_SET_SECURE_PARAM podía presentar un desbordamiento aritmético en el subsistema de asignación de memoria, lo que provocaba una asignación menor a la solicitada y un desbordamiento del búfer. La versión 1.15.12 soluciona este problema.

22 May 2025, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-22 13:15

Updated : 2025-05-23 15:55


NVD link : CVE-2025-46713

Mitre link : CVE-2025-46713

CVE.ORG link : CVE-2025-46713


JSON object : View

Products Affected

No product.

CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')