CVE-2025-52937

LOW

PointCloudLibrary PCL <1.14.0 - Buffer Overflow

Title source: llm
STIX 2.1

Description

Vulnerability in PointCloudLibrary PCL (surface/src/3rdparty/opennurbs modules). This vulnerability is associated with program files crc32.C. This vulnerability is only relevant if the PCL version is older than 1.14.0 or the user specifically requests to not use the system zlib (WITH_SYSTEM_ZLIB=FALSE).

Scores

CVSS v4 2.0
EPSS 0.0003
EPSS Percentile 7.4%
CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:L/VI:L/VA:L/SC:L/SI:L/SA:L/S:N/AU:N/R:A/V:D/RE:M/U:Green

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-494
Status published
Products (1)
PointCloudLibrary/pcl < 1.14.0
Published Jun 23, 2025
Tracked Since Feb 18, 2026