CVE-2025-9136

A flaw has been found in libretro RetroArch 1.18.0/1.19.0/1.20.0. This affects the function filestream_vscanf of the file libretro-common/streams/file_stream.c. This manipulation causes out-of-bounds read. The attack needs to be launched locally. Upgrading to version 1.21.0 mitigates this issue. It is recommended to upgrade the affected component.
CVSS

No CVSS.

Configurations

No configuration.

History

19 Aug 2025, 14:15

Type Values Removed Values Added
References () https://vuldb.com/?submit.617657 - () https://vuldb.com/?submit.617657 -
CWE CWE-125
CWE-119
CVSS v2 : unknown
v3 : 5.3
v2 : unknown
v3 : unknown

19 Aug 2025, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-19 12:15

Updated : 2025-08-19 14:15


NVD link : CVE-2025-9136

Mitre link : CVE-2025-9136


JSON object : View

Products Affected

No product.

CWE

No CWE.