A Heap-based Buffer Overflow vulnerability is present in Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions 12.6.1204.207 and prior that could allow an attacker to disclose information or execute arbitrary code.
Advisories

No advisories yet.

Fixes

Solution

Ashlar-Vellum recommends users update to the following versions: * Cobalt: Versions 12.6.1204.208 or higher * Xenon: Versions 12.6.1204.208 or higher * Argon: Versions 12.6.1204.208 or higher * Lithium: Versions 12.6.1204.208 or higher * Cobalt Share: Versions 12.6.1204.208 or higher


Workaround

No workaround given by the vendor.

History

Thu, 27 Nov 2025 10:00:00 +0000

Type Values Removed Values Added
First Time appeared Ashlar
Ashlar argon
Ashlar cobalt
Ashlar lithium
Ashlar xenon
Vendors & Products Ashlar
Ashlar argon
Ashlar cobalt
Ashlar lithium
Ashlar xenon

Tue, 25 Nov 2025 18:00:00 +0000

Type Values Removed Values Added
Description A Heap-based Buffer Overflow vulnerability is present in Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions 12.6.1204.207 and prior that could allow an attacker to disclose information or execute arbitrary code.
Title Heap-based Buffer Overflow in Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, Cobalt Share
Weaknesses CWE-122
References
Metrics cvssV4_0

{'score': 8.4, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-11-25T20:22:20.520Z

Reserved: 2025-11-17T16:43:44.054Z

Link: CVE-2025-65085

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-11-25T18:15:54.283

Modified: 2025-11-25T22:16:16.690

Link: CVE-2025-65085

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-11-27T09:45:49Z