CVE-2018-25222Disclosure

LOWCVSS 8.6 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

SC v7.16 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying oversized input that exceeds buffer boundaries. Attackers can craft malicious input strings exceeding 1052 bytes to overwrite the instruction pointer and execute shellcode in the application context.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-787

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-03-28); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-03-28: 1Mentions · 2026-03-29: 1Technical Details · 2026-03-28: 103-2803-29
Signal classification2 categories
Disclosure
150.0%
General
150.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-03-281
Disclosure1
2026-03-291
General1
Full discourse2 posts
  • CVE@CVEnew
    Disclosure

    CVE-2018-25222 SC v7.16 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying oversized input that exceeds buffer b… https://www.cve.org/CVERecord?id=CVE-2018-25222

    Post summary

    SC v7.16 contains a stack-based buffer overflow that allows local attackers to execute arbitrary code by supplying oversized input.

    0001056
    56.9K followersView on X
  • CVEarity@CVEarity
    General

    ⚡ New CVE Alert: CVE-2018-25222 📊 Severity: 8.4 🚨 Risk Level: High 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2018-25222 #CVE-2018-25222 #CVE #High #CyberSecurity #InfoSec https://t.co/HjPyQ8HfeZ

    Post summary

    The tweet announces the existence of CVE-2018-25222, provides severity and risk level, but contains no detailed technical information, PoC, or exploitation details.

    0000024
    123 followersView on X

Explore more