CVE-2025-58750

HIGH
8.2CVSS v3
CVSS v2
0.30% EPSS (exploit probability)
CWE-119CWE

Description

rAthena is an open-source cross-platform massively multiplayer online role playing game (MMORPG) server. Versions prior to commit 0cc348b are missing a bound check in `chclif_parse_moveCharSlot` that can result in reading and writing out of bounds using input from the user. The problem has been fixed in commit 0cc348b.

CVSS v3 vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H

Affected routers (0)

No routers currently mapped to this CVE in our database.

External references