PCSX2 is a free and open-source PlayStation 2 (PS2) emulator. In versions 2.5.377 and below, an unchecked offset and size used in a memcpy operation inside PCSX2's CDVD SCMD 0x91 and SCMD 0x8F handlers allow a specially crafted disc image or ELF to cause an out-of-bounds read from emulator memory. Because the offset and size is controlled through MG header fields, a specially crafted ELF can read data beyond the bounds of mg_buffer and have it reflected back into emulated memory. This issue is fixed in version 2.5.378.
Metrics
Affected Vendors & Products
References
History
Mon, 15 Dec 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 14 Dec 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Pcsx2
Pcsx2 pcsx2 |
|
| Vendors & Products |
Pcsx2
Pcsx2 pcsx2 |
Fri, 12 Dec 2025 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PCSX2 is a free and open-source PlayStation 2 (PS2) emulator. In versions 2.5.377 and below, an unchecked offset and size used in a memcpy operation inside PCSX2's CDVD SCMD 0x91 and SCMD 0x8F handlers allow a specially crafted disc image or ELF to cause an out-of-bounds read from emulator memory. Because the offset and size is controlled through MG header fields, a specially crafted ELF can read data beyond the bounds of mg_buffer and have it reflected back into emulated memory. This issue is fixed in version 2.5.378. | |
| Title | PCSX2 has an Out-of-bounds Read due to unchecked offset and size passed to memcpy | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published: 2025-12-12T22:24:57.520Z
Updated: 2025-12-15T14:59:28.999Z
Reserved: 2025-12-11T20:30:54.927Z
Link: CVE-2025-67749
Updated: 2025-12-15T14:59:10.621Z
Status : Awaiting Analysis
Published: 2025-12-12T23:15:42.223
Modified: 2025-12-15T18:22:40.637
Link: CVE-2025-67749
No data.