216.73.216.36

CVE-2025-66443

· Published 25/12/2025 05:16 · Modified 25/12/2025 05:16

Labels: CVE-2025-66443 2025-12-25CVE-2025-66443CWE-617[email protected]

Essential information

Published
25/12/2025 05:16
Modified
25/12/2025 05:16
Author
Creator
CVSS
7.5 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CVSS metrics

Description

Pexip Infinity 35.0 through 38.1 before 39.0, in non-default configurations that use Direct Media for WebRTC, has Improper Input Validation in signalling that allows an attacker to trigger a software abort, resulting in a temporary denial of service.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
pexip / infinity cpe:2.3:a:pexip:infinity:35.0-*:*:*:*:*:*:*
pexip / infinity cpe:2.3:a:pexip:infinity:38.1-*:*:*:*:*:*:*
pexip / infinity cpe:2.3:a:pexip:infinity:<39.0:*:*:*:*:*:*

References