CVE-2025-14673: GMG137 SNAP7-RS

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

A vulnerability has been found in gmg137 snap7-rs up to 1.142.1. Affected is the function snap7_rs::client::S7Client::as_ct_write of the file /tests/snap7-rs/src/client.rs. The manipulation leads to heap-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

Affected products

  • GMG137 SNAP7-RS: up to and including 1.142.1

Published 2025-12-14. Last modified 2026-09-28.