Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-65409

Опубликовано: 30 дек. 2025
Источник: redhat
CVSS3: 5

Описание

A divide-by-zero in the encryption/decryption routines of GNU Recutils v1.9 allows attackers to cause a Denial of Service (DoS) via inputting an empty value as a password.

A flaw was found in Recutils. Attackers can exploit a divide-by-zero vulnerability in the encryption and decryption routines by providing an empty password. This can lead to a Denial of Service (DoS), making the application unavailable to legitimate users.

Отчет

This vulnerability is rated Moderate for Red Hat. It allows attackers to cause a Denial of Service (DoS) by providing an empty password to the encryption/decryption routines of Recutils. This issue primarily affects community projects like Fedora 42 and Fedora 43, where Recutils is available.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=2426292Recutils: Recutils: Denial of Service due to divide-by-zero with empty password input

5 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
3 месяца назад

A divide-by-zero in the encryption/decryption routines of GNU Recutils v1.9 allows attackers to cause a Denial of Service (DoS) via inputting an empty value as a password.

CVSS3: 7.5
nvd
3 месяца назад

A divide-by-zero in the encryption/decryption routines of GNU Recutils v1.9 allows attackers to cause a Denial of Service (DoS) via inputting an empty value as a password.

CVSS3: 7.5
debian
3 месяца назад

A divide-by-zero in the encryption/decryption routines of GNU Recutils ...

CVSS3: 7.5
github
3 месяца назад

A divide-by-zero in the encryption/decryption routines of GNU Recutils v1.9 allows attackers to cause a Denial of Service (DoS) via inputting an empty value as a password.

5 Medium

CVSS3