CVE-2025-65085

A Heap-based Buffer Overflow vulnerability is present in Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions 12.6.1204.207 and prior that could allow an attacker to disclose information or execute arbitrary code.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
icscertCNA
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 22%
VendorProductVersion
ashlarargon
𝑥
≤ 12.2.1204.207
ashlarcobalt
𝑥
≤ 12.2.1204.207
ashlarcobalt_share
𝑥
≤ 12.2.1204.207
ashlarlithium
𝑥
≤ 12.2.1204.207
ashlarxenon
𝑥
≤ 12.2.1204.207
𝑥
= Vulnerable software versions