CVE-2025-70616Disclosure(dieboldnixdorf / wnbios64.sys)

LOWCVSS 7.8 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A stack buffer overflow vulnerability exists in the Wincor Nixdorf wnBios64.sys kernel driver (version 1.2.0.0) in the IOCTL handler for code 0x80102058. The vulnerability is caused by missing bounds checking on the user-controlled Options parameter before copying data into a 40-byte stack buffer (Src[40]) using memmove. An attacker with local access can exploit this vulnerability by sending a crafted IOCTL request with Options > 40, causing a stack buffer overflow that may lead to kernel code execution, local privilege escalation, or denial of service (system crash). Additionally, the same IOCTL handler can leak kernel addresses and other sensitive stack data when reading beyond the buffer boundaries.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-121

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • wnbios64.sys

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • 2 total mentions across 1 day

Affected systems

Products
wnbios64.sys

1 version affected across 1 product

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-03-08: 2Technical Details · 2026-03-08: 203-08
Signal classification1 categories
Disclosure
2100.0%
Referenced assets2 URLs
By indicator
Full discourse2 posts
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2025-70616 A stack buffer overflow vulnerability exists in the Wincor Nixdorf wnBios64.sys kernel driver (version 1.2.0.0) in the IOCTL handler for code 0x80102058. The vulnerab… https://www.cve.org/CVERecord?id=CVE-2025-70616 ----- Traducción: CVE-2025-70616 Exi… http://infoflow.cloud`

    Post summary

    The tweet announces CVE-2025-70616, describing a stack buffer overflow in the Wincor Nixdorf wnBios64.sys kernel driver. No PoC, exploit, patch, or active usage is mentioned.

    0000085
    56 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2025-70616 A stack buffer overflow vulnerability exists in the Wincor Nixdorf wnBios64.sys kernel driver (version 1.2.0.0) in the IOCTL handler for code 0x80102058. The vulnerab… https://www.cve.org/CVERecord?id=CVE-2025-70616

    Post summary

    The text announces a stack buffer overflow vulnerability in the Wincor Nixdorf wnBios64.sys kernel driver, providing technical details but no PoC, exploit code, patch, or evidence of active exploitation.

    00000301
    56.6K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appdieboldnixdorfwnbios64.sys1.2.0.0--

Explore more