Medium severity6.2NVD Advisory· Published Feb 11, 2025· Updated Jun 17, 2026
CVE-2025-24956
CVE-2025-24956
Description
A vulnerability has been identified in OpenV2G (All versions < V0.9.6). The OpenV2G EXI parsing feature is missing a length check when parsing X509 serial numbers. Thus, an attacker could introduce a buffer overflow that leads to memory corruption.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:siemens:openv2g:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:siemens:openv2g:*:*:*:*:*:*:*:*range: <0.9.6
- (no CPE)range: <0.9.6
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
1- cert-portal.siemens.com/productcert/html/ssa-647005.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.