Complete analysis of CVE-2025-21298, a double free vulnerability related to ole32 library in windows. # Review of the CVE-2025-21298 vulnerability
CVE-2025-21298 is a critical vulnerability in the OLE (Object Linking and Embedding) technology used in Microsoft Windows.
It specifically affects the UtOlePresStmToContentsStm function in the ole32.dll library. This function is responsible for converting an OLE "presentation stream" into a "content stream" inside OLE storage.
The vulnerability can be triggered when a user opens a malicious RTF file in a Microsoft product. Due to poor memory management, an attacker can exploit this flaw to run their own code on the system.
This is a "Use After Free" vulnerability, classified as CWE-416. That means the program tries to use memory that has already been freed, which can lead to unexpected behavior or let the attacker run malicious code (shellcode) on the system.
[4.0K] /data/pocs/8accca0285e5570bf5429c5aca3cde942037bf23
├── [6.8M] cve_2025_21298_poc.pdf
└── [ 818] README.md
0 directories, 2 files