Vulnerability Description
Memory Leak vulnerability in SoftEtherVPN 5.02.5187 allows an attacker to cause a denial of service via the UnixMemoryAlloc function. NOTE: the Supplier disputes this because the behavior is limited to a single allocation of a few hundred bytes with a command-line tool.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Softether | Vpn | 5.02.5187 |
Related Weaknesses (CWE)
References
- https://filecenter.softether-upload.com/d/250715_001_79538/CVE-2025-25566.pdf
- https://lzydry.github.io/CVE-2025-25566/Exploit
FAQ
What is CVE-2025-25566?
CVE-2025-25566 is a vulnerability with a CVSS score of 5.6 (MEDIUM). Memory Leak vulnerability in SoftEtherVPN 5.02.5187 allows an attacker to cause a denial of service via the UnixMemoryAlloc function. NOTE: the Supplier disputes this because the behavior is limited t...
How severe is CVE-2025-25566?
CVE-2025-25566 has been rated MEDIUM with a CVSS base score of 5.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-25566?
Check the references section above for vendor advisories and patch information. Affected products include: Softether Vpn.