Stack-Based Buffer Overflow in Biosig Project's Libbiosig Affects Multiple Versions
CVE-2025-54484
What is CVE-2025-54484?
A stack-based buffer overflow vulnerability appears in the MFER parsing functionality of the Biosig Project's libbiosig version 3.9.0 and the current master branch (35a819fa). An attacker may exploit this vulnerability by providing a specially crafted MFER file, leading to potential arbitrary code execution. The vulnerability is particularly evident in the code execution pathway at line 8779 of biosig.c when a specific tag (6) is processed, which fails to handle certain input lengths correctly. This oversight could allow an attacker to manipulate the application’s execution flow.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
libbiosig 3.9.0
libbiosig Master Branch (35a819fa)
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
