CVE-2025-29364: Spimsimulator Spim

Medium severity, CVSS 6.5. EPSS: 0.4% chance of exploitation in the next 30 days.

spimsimulator spim v9.1.24 and before is vulnerable to Buffer Overflow in the READ_SYSCALL and WRITE_SYSCALL system calls. The application verifies the legitimacy of the starting and ending addresses for memory read/write operations. By configuring the starting and ending addresses for memory read/write to point to distinct memory segments within the virtual machine, it is possible to circumvent these checks.

Affected products

Published 2025-08-28. Last modified 2026-09-26.