NVD - CVE-2025-59375 (original) (raw)

Change History

4 change records found show changes

CVE Modified by CVE 11/04/2025 5:16:34 PM

Action Type Old Value New Value
Added Reference http://www.openwall.com/lists/oss-security/2025/09/16/2

Initial Analysis by NIST 10/17/2025 3:26:36 PM

Action Type Old Value New Value
Added CPE Configuration OR *cpe:2.3:a:libexpat_project:libexpat:*:*:*:*:*:*:*:* versions up to (excluding) 2.7.2
Added Reference Type MITRE: https://github.com/libexpat/libexpat/blob/676a4c531ec768732fac215da9730b5f50fbd2bf/expat/Changes#L45-L74 Types: Product
Added Reference Type MITRE: https://github.com/libexpat/libexpat/blob/R\_2\_7\_2/expat/Changes Types: Product
Added Reference Type MITRE: https://github.com/libexpat/libexpat/issues/1018 Types: Exploit, Issue Tracking
Added Reference Type MITRE: https://github.com/libexpat/libexpat/pull/1034 Types: Issue Tracking
Added Reference Type MITRE: https://issues.oss-fuzz.com/issues/439133977 Types: Exploit, Issue Tracking

CVE Modified by MITRE 9/17/2025 10:15:40 AM

Action Type Old Value New Value
Added Reference https://github.com/libexpat/libexpat/blob/R\_2\_7\_2/expat/Changes

New CVE Received from MITRE 9/14/2025 11:15:40 PM

Action Type Old Value New Value
Added Description libexpat in Expat before 2.7.2 allows attackers to trigger large dynamic memory allocations via a small document that is submitted for parsing.
Added CVSS V3.1 AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Added CWE CWE-770
Added Reference https://github.com/libexpat/libexpat/blob/676a4c531ec768732fac215da9730b5f50fbd2bf/expat/Changes#L45-L74
Added Reference https://github.com/libexpat/libexpat/issues/1018
Added Reference https://github.com/libexpat/libexpat/pull/1034
Added Reference https://issues.oss-fuzz.com/issues/439133977