216.73.217.22

CVE-2025-66382

· Published 28/11/2025 07:15 · Modified 19/12/2025 16:05

Labels: CVE-2025-66382 2025-11-28CVE-2025-66382CWE-407[email protected]

Essential information

Published
28/11/2025 07:15
Modified
19/12/2025 16:05
Author
Creator
CVSS
2.9 LOW (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L

CVSS metrics

Description

In libexpat through 2.7.3, a crafted file with an approximate size of 2 MiB can lead to dozens of seconds of processing time.

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
libexpat project / libexpat cpe:2.3:a:libexpat_project:libexpat:*:*:*:*:*:*:*:*

References