Out-of-Bounds Write Vulnerability in V-SFT Software by Fujielectric
CVE-2025-61857

8.4HIGH

What is CVE-2025-61857?

An out-of-bounds write vulnerability exists in the WinFontDynStrCheck function of V-SFT software, specifically in versions 6.2.7.0 and earlier. This vulnerability can be exploited through specially crafted V-SFT files, potentially leading to information disclosure, abnormal termination of the affected system, and execution of arbitrary code. Users of this software should be aware of the risks and apply any available updates or mitigation measures.

Affected Version(s)

V-SFT v6.2.7.0 and earlier

References

CVSS V4

Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-61857 : Out-of-Bounds Write Vulnerability in V-SFT Software by Fujielectric