CVE-2025-43016

In JetBrains Rider before 2025.1.2 custom archive unpacker allowed arbitrary file overwrite during remote debug session
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:jetbrains:rider:*:*:*:*:*:*:*:*

History

01 Oct 2025, 19:32

Type Values Removed Values Added
First Time Jetbrains
Jetbrains rider
CPE cpe:2.3:a:jetbrains:rider:*:*:*:*:*:*:*:*
References () https://www.jetbrains.com/privacy-security/issues-fixed/ - () https://www.jetbrains.com/privacy-security/issues-fixed/ - Issue Tracking

29 Apr 2025, 13:52

Type Values Removed Values Added
Summary
  • (es) En JetBrains Rider anterior a la versión 2025.1.2, el descompresor de archivos personalizado permitía la sobrescritura arbitraria de archivos durante la sesión de depuración remota

25 Apr 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-25 15:15

Updated : 2025-10-01 19:32


NVD link : CVE-2025-43016

Mitre link : CVE-2025-43016

CVE.ORG link : CVE-2025-43016


JSON object : View

Products Affected

jetbrains

  • rider
CWE
CWE-23

Relative Path Traversal