Description

A stack buffer overflow was found in Internationl components for unicode (ICU ). While running the genrb binary, the 'subtag' struct overflowed at the SRBRoot::addTag function. This issue may lead to memory corruption and local arbitrary code execution.

INFO

Published Date :

2025-05-27T20:51:50.958Z

Last Modified :

2026-01-22T19:40:47.593Z

Source :

redhat
AFFECTED PRODUCTS

The following products are affected by CVE-2025-5222 vulnerability.

Vendors Products
Redhat
  • Enterprise Linux
  • Openshift
  • Rhel E4s
  • Rhel Eus
Unicode
  • International Components For Unicode

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact