CVE-2025-41739 Details
Description
An unauthenticated remote attacker, who beats a race condition, can exploit a flaw in the communication servers of the CODESYS Control runtime system on Linux and QNX to trigger an out-of-bounds read via crafted socket communication, potentially causing a denial of service.
A race condition vulnerability has been identified in the communication servers of the CODESYS Control runtime system, specifically in the SysSocket implementation for Linux and QNX. This flaw allows an unauthenticated remote attacker to trigger an out-of-bounds read by exploiting the race condition through crafted socket communication. The exploitation can cause a denial-of-service condition by crashing the affected communication task. Additionally, clients using the CODESYS PLCHandler on Linux or QNX may be impacted if they connect to a malicious server that exploits this vulnerability.
Users can update to CODESYS PLCHandler, CODESYS Remote Target Visu, and CODESYS Runtime Toolkit version 3.5.21.40. For other CODESYS Control products on Linux or QNX, an update to version 4.19.0.0 is recommended, with this version expected to be released in Q1 2026.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Dec 1, 2025CISA-ADP
Assessed Dec 1, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://certvde.com/de/advisories/VDE-2025-099 | [email protected] | AdvisoryRemedy |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-125 | Out-of-bounds Read | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| CODESYS Control | All versions |
CPE
Remediation
| |
| CODESYS Edge Gateway | All versions |
CPE
Remediation
| |
| CODESYS PLCHandler | All versions |
CPE
Remediation
| |
| CODESYS Remote Target Visu | All versions |
CPE
Remediation
| |
| CODESYS Runtime Toolkit | All versions |
CPE
Remediation
| |
| CODESYS TargetVisu | All versions |
CPE
Remediation
| |
| CODESYS Virtual Control | All versions |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Dec 1, 2025 | New CVE Received | [email protected] |
Volerion