VYPR
High severity7.3NVD Advisory· Published Feb 5, 2025· Updated Jun 17, 2026

CVE-2025-0725

CVE-2025-0725

Description

When libcurl is asked to perform automatic gzip decompression of content-encoded HTTP responses with the CURLOPT_ACCEPT_ENCODING option, using zlib 1.2.0.3 or older, an attacker-controlled integer overflow would make libcurl perform a buffer overflow.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

38

Patches

Vulnerability mechanics

References

8

News mentions

0

No linked articles in our index yet.