9.1
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Description
An out-of-bounds read vulnerability has been discovered in Monkey's Audio 11.31, specifically in the CAPECharacterHelper::GetUTF16FromUTF8 function. The issue arises from improper handling of the length of the input UTF-8 string, causing the function to read past the memory boundary. This vulnerability may result in a crash or expose sensitive data.
AI Analysis
Out-of-bounds read vulnerability in Monkey's Audio 11.31 due to improper handling of UTF-8 string length, potentially causing a crash or sensitive data exposure.
Basic Information
ID
CVE-2025-61043
Source
mitre
Published
Oct 28, 2025 at 00:00
Modified
Oct 29, 2025 at 14:11
Affected Product
Vendor
Monkey's Audio
Product
Monkey's Audio
Version
11.31
Affected Versions
n/a n/a n/a
CWE Classification
AI Assessment
AI Score
9.1 / 10
AI Severity
Critical
Vendor
Monkey's Audio
Product
Monkey's Audio
Version
11.31