Unrated severityNVD Advisory· Published Aug 1, 2025· Updated Aug 20, 2025
CVE-2025-54939
CVE-2025-54939
Description
LiteSpeed QUIC (LSQUIC) Library before 4.3.1 has an lsquic_engine_packet_in memory leak.
Affected products
2- Range: <4.3.1
- litespeedtech/LSQUICv5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- blog.litespeedtech.com/2025/08/18/litespeed-security-update/mitre
- github.com/litespeedtech/lsquic/blob/70486141724f85e97b08f510673e29f399bbae8f/CHANGELOGmitre
- github.com/litespeedtech/lsquic/commit/4cd9252e77fb4a36b572e2167a84067d603d3b23mitre
- www.imperva.com/blog/quic-leak-cve-2025-54939-new-high-risk-pre-handshake-remote-denial-of-service-in-lsquic-quic-implementation/mitre
News mentions
0No linked articles in our index yet.