R 3.4.4 contains a local buffer overflow vulnerability that allows attackers to execute arbitrary code by injecting malicious input into the GUI Preferences language field. Attackers can craft a payload with a 292-byte offset and JMP ESP instruction to execute commands like calc.exe when the payload is pasted into the Language for menus and messages field.
Metrics
Affected Vendors & Products
References
History
Sun, 12 Apr 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | R 3.4.4 contains a local buffer overflow vulnerability that allows attackers to execute arbitrary code by injecting malicious input into the GUI Preferences language field. Attackers can craft a payload with a 292-byte offset and JMP ESP instruction to execute commands like calc.exe when the payload is pasted into the Language for menus and messages field. | |
| Title | R 3.4.4 Local Buffer Overflow Windows XP SP3 | |
| Weaknesses | CWE-787 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-04-12T12:28:47.555Z
Reserved: 2026-04-05T15:34:46.394Z
Link: CVE-2019-25695
No data.
Status : Received
Published: 2026-04-12T13:16:32.443
Modified: 2026-04-12T13:16:32.443
Link: CVE-2019-25695
No data.
OpenCVE Enrichment
No data.