A stack buffer overflow was found in Internationl components for unicode (ICU ). While running the genrb binary, the 'subtag' struct overflowed at the SRBRoot::addTag function. This issue may lead to memory corruption and local arbitrary code execution.
References
Configurations
History
No history.
Information
Published : 2025-05-27 21:15
Updated : 2026-09-03 15:17
NVD link : CVE-2025-5222
Mitre link : CVE-2025-5222
CVE.ORG link : CVE-2025-5222
JSON object : View
Products Affected
unicode
- international_components_for_unicode
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
