CVE-2025-69809
Received
Received - Intake
Write-What-Where Vulnerability in p2r3 Bareiron Enables Remote Code Execution
Publication date: 2026-03-16
Last updated on: 2026-04-27
Assigner: MITRE
Description
Description
A write-what-where condition in p2r3 Bareiron commit 8e4d40 allows unauthenticated attackers to write arbitrary values to memory, enabling arbitrary code execution via a crafted packet.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| p2r3 | bareiron | 2025-09-16 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-123 | Any condition where the attacker has the ability to write an arbitrary value to an arbitrary location, often as the result of a buffer overflow. |