---
id: CVE-2025-8412
title: >-
  A Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
  vulnerability in SUSE Virtual Machine Driver Pack allows an attacker with the
  ability to modify the registry to affect the integrity of the driver
summary: >-
  A Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
  vulnerability in SUSE Virtual Machine Driver Pack allows an attacker with the
  ability to modify the registry to affect the integrity of the driver. We're
  not aware …
severity: none
cwe:
  - CWE-120
published: '2026-07-14'
updated: '2026-09-29'
sourceUpdated: '2026-09-29T14:10:00.117'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-8412'
references:
  - url: 'https://bugzilla.suse.com/show_bug.cgi?id=CVE-2025-8412'
    label: meissner@suse.de
tags:
  - nvd
epss: 0.0012
epssPercentile: 0.0163
ingestedAt: '2026-09-29T14:36:14.067Z'
---

## Overview

A Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in SUSE Virtual Machine Driver Pack allows an attacker with the ability to modify the registry to affect the integrity of the driver. We're not aware of a feasible way to exploit this currently.






This issue affects Virtual Machine Driver Pack: before e7a602ec232756ead019bdf19d6d3b9d010cc94b.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
