Логотип exploitDog
bind:CVE-2025-32944
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-32944

Количество 3

Количество 3

nvd логотип

CVE-2025-32944

10 месяцев назад

The vulnerability allows any authenticated user to cause the PeerTube server to stop functioning in a persistent manner.  If user import is enabled (which is the default setting), any registered user can upload an archive for importing. The code uses the yauzl library for reading the archive. If the yauzl library encounters a filename that is considered illegal, it raises an exception that is uncaught by PeerTube, leading to a crash which repeats infinitely on startup.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2025-32944

10 месяцев назад

The vulnerability allows any authenticated user to cause the PeerTube ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-fvpc-gqmr-784w

10 месяцев назад

The vulnerability allows any authenticated user to cause the PeerTube server to stop functioning in a persistent manner.  If user import is enabled (which is the default setting), any registered user can upload an archive for importing. The code uses the yauzl library for reading the archive. If the yauzl library encounters a filename that is considered illegal, it raises an exception that is uncaught by PeerTube, leading to a crash which repeats infinitely on startup.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-32944

The vulnerability allows any authenticated user to cause the PeerTube server to stop functioning in a persistent manner.  If user import is enabled (which is the default setting), any registered user can upload an archive for importing. The code uses the yauzl library for reading the archive. If the yauzl library encounters a filename that is considered illegal, it raises an exception that is uncaught by PeerTube, leading to a crash which repeats infinitely on startup.

CVSS3: 6.5
0%
Низкий
10 месяцев назад
debian логотип
CVE-2025-32944

The vulnerability allows any authenticated user to cause the PeerTube ...

CVSS3: 6.5
0%
Низкий
10 месяцев назад
github логотип
GHSA-fvpc-gqmr-784w

The vulnerability allows any authenticated user to cause the PeerTube server to stop functioning in a persistent manner.  If user import is enabled (which is the default setting), any registered user can upload an archive for importing. The code uses the yauzl library for reading the archive. If the yauzl library encounters a filename that is considered illegal, it raises an exception that is uncaught by PeerTube, leading to a crash which repeats infinitely on startup.

CVSS3: 6.5
0%
Низкий
10 месяцев назад

Уязвимостей на страницу