CVE-2025-62689

NULL pointer dereference vulnerability exists in GNU libmicrohttpd v1.0.2 and earlier. The vulnerability was fixed in commit ff13abc on the master branch of the libmicrohttpd Git repository, after the v1.0.2 tag. A specially crafted packet sent by an attacker could cause a denial-of-service (DoS) condition.
Configurations

Configuration 1 (hide)

cpe:2.3:a:gnu:libmicrohttpd:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-11-10 05:15

Updated : 2025-11-14 18:05


NVD link : CVE-2025-62689

Mitre link : CVE-2025-62689

CVE.ORG link : CVE-2025-62689


JSON object : View

Products Affected

gnu

  • libmicrohttpd
CWE
CWE-122

Heap-based Buffer Overflow