Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-40914

Опубликовано: 11 июн. 2025
Источник: debian
EPSS Низкий

Описание

Perl CryptX before version 0.087 contains a dependency that may be susceptible to an integer overflow. CryptX embeds a version of the libtommath library that is susceptible to an integer overflow associated with CVE-2023-36328.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libcryptx-perlunfixedpackage
libcryptx-perlno-dsabookwormpackage
libcryptx-perlpostponedbullseyepackage

Примечания

  • https://lists.security.metacpan.org/cve-announce/msg/30332012/

  • https://github.com/libtom/libtommath/pull/546

  • https://github.com/DCIT/perl-CryptX/security/advisories/GHSA-6fh3-7qjq-8v22

  • CVE exists because CryptX embeds a version of the libtommath library that is

  • susceptible to an integer overflow associated with CVE-2023-36328.

EPSS

Процентиль: 18%
0.00057
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
10 дней назад

Perl CryptX before version 0.087 contains a dependency that may be susceptible to an integer overflow. CryptX embeds a version of the libtommath library that is susceptible to an integer overflow associated with CVE-2023-36328.

CVSS3: 9.8
nvd
10 дней назад

Perl CryptX before version 0.087 contains a dependency that may be susceptible to an integer overflow. CryptX embeds a version of the libtommath library that is susceptible to an integer overflow associated with CVE-2023-36328.

EPSS

Процентиль: 18%
0.00057
Низкий