PCSX2 Stack-Based Buffer Overflow Vulnerability in IOP Console Logging

Vulnerability

A stack-based buffer overflow vulnerability has been identified in PCSX2 versions prior to 2.3.414. The issue arises in the Kprintf_HLE function, where opening a disc image that contains a specially crafted message can enable a remote attacker to execute arbitrary code, but only if the user has IOP Console Logging enabled.

Impact

Exploitation of this vulnerability could lead to arbitrary code execution on the affected system.

Remediation

Users can update to PCSX2 version 2.3.414 or later to address this vulnerability. For those who have not enabled IOP Logging, no action is needed.

Added: Jun 12, 2025, 9:19 PM
Updated: Jun 12, 2025, 9:19 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
4.0
remediation
0.0
relevance
0.2
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.