Medium severity5.6NVD Advisory· Published Sep 8, 2025· Updated Apr 15, 2026
CVE-2025-40929
CVE-2025-40929
Description
Cpanel::JSON::XS before version 4.40 for Perl has an integer buffer overflow causing a segfault when parsing crafted JSON, enabling denial-of-service attacks or other unspecified impact
Patches
22c3ad6196920378236219eaaVulnerability mechanics
Generated by null/stub on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.
References
5- www.openwall.com/lists/oss-security/2025/09/08/1nvd
- github.com/rurban/Cpanel-JSON-XS/commit/378236219eaa35742c3962ecbdee364903b0a1f2.patchnvd
- lists.debian.org/debian-lts-announce/2025/09/msg00034.htmlnvd
- metacpan.org/release/RURBAN/Cpanel-JSON-XS-4.39/source/XS.xsnvd
- metacpan.org/release/RURBAN/Cpanel-JSON-XS-4.40/changesnvd
News mentions
0No linked articles in our index yet.