Buffer Overflow Vulnerabilities in Libbiosig by Biosig Project
CVE-2025-66043

9.8CRITICAL

Key Information:

Status
Vendor
CVE Published:
11 December 2025

What is CVE-2025-66043?

Libbiosig version 3.9.1 contains multiple stack-based buffer overflow vulnerabilities within its MFER parsing functionality. These vulnerabilities can potentially allow attackers to execute arbitrary code through specially crafted MFER files. By delivering a malicious file designed to exploit these weaknesses, an attacker could gain unauthorized control over a system, making it crucial for users to apply necessary security measures and patches.

Affected Version(s)

libbiosig 3.9.1

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Discovered by Mark Bereza and Lilith >_> of Cisco Talos.
.
CVE-2025-66043 : Buffer Overflow Vulnerabilities in Libbiosig by Biosig Project