CVE-2025-5222
Executive Summary
A stack buffer overflow in the ICU (International Components for Unicode) library’s genrb binary occurs when the 'subtag' struct overflows in SRBRoot::addTag. This flaw can corrupt memory and enable local arbitrary code execution on affected systems.
Authoritative CVE Metadata - CVSS Base Score: 7.0 (HIGH) - Published: 2025-05-27T21:15:23.030 - Last Modified: 2026-08-31T03:16:35.080
Original Description: A stack buffer overflow was found in Internationl components for unicode (ICU ). While running the genrb binary, the 'subtag' struct overflowed at the SRBRoot::addTag function. This issue may lead to memory corruption and local arbitrary code execution.
"A rolling stone gathers no moss."
— Publilius Syrus
Source: NVD