Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-67899

Опубликовано: 14 дек. 2025
Источник: debian
EPSS Низкий

Описание

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
uriparserunfixedpackage
uriparserno-dsatrixiepackage
uriparserno-dsabookwormpackage
uriparserpostponedbullseyepackage

Примечания

  • https://github.com/uriparser/uriparser/issues/282

  • https://github.com/uriparser/uriparser/pull/284

  • https://github.com/uriparser/uriparser/commit/cd5565036645dbe104b5807bb64998db917cdf33 (uriparser-1.0.0)

  • https://github.com/uriparser/uriparser/commit/70eef664a5ffd5a0d05fd73bbc61d3e3dcbdf979 (uriparser-1.0.0)

  • https://github.com/uriparser/uriparser/commit/8044bd70c0dc92cfabef4c44793790b923971548 (uriparser-1.0.0)

EPSS

Процентиль: 4%
0.00018
Низкий

Связанные уязвимости

CVSS3: 2.9
ubuntu
4 месяца назад

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.

CVSS3: 2.9
redhat
4 месяца назад

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.

CVSS3: 2.9
nvd
4 месяца назад

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.

suse-cvrf
около 2 месяцев назад

Security update for uriparser

CVSS3: 2.9
github
4 месяца назад

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.

EPSS

Процентиль: 4%
0.00018
Низкий