VYPR
Medium severity6.2NVD Advisory· Published Feb 11, 2025· Updated Jun 17, 2026

CVE-2025-24956

CVE-2025-24956

Description

A vulnerability has been identified in OpenV2G (All versions < V0.9.6). The OpenV2G EXI parsing feature is missing a length check when parsing X509 serial numbers. Thus, an attacker could introduce a buffer overflow that leads to memory corruption.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:a:siemens:openv2g:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:siemens:openv2g:*:*:*:*:*:*:*:*range: <0.9.6
    • (no CPE)range: <0.9.6
    • (no CPE)range: 0
  • OpenV2G/OpenV2Gllm-fuzzy
    Range: <0.9.6

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.