Medium severity5.3NVD Advisory· Published Aug 1, 2025· Updated Jun 17, 2026
CVE-2025-54939
CVE-2025-54939
Description
LiteSpeed QUIC (LSQUIC) Library before 4.3.1 has an lsquic_engine_packet_in memory leak.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <4.3.1
- Range: 0
Patches
Vulnerability mechanics
References
4- www.imperva.com/blog/quic-leak-cve-2025-54939-new-high-risk-pre-handshake-remote-denial-of-service-in-lsquic-quic-implementation/nvdExploitThird Party Advisory
- blog.litespeedtech.com/2025/08/18/litespeed-security-update/nvdVendor Advisory
- github.com/litespeedtech/lsquic/blob/70486141724f85e97b08f510673e29f399bbae8f/CHANGELOGnvdRelease Notes
- github.com/litespeedtech/lsquic/commit/4cd9252e77fb4a36b572e2167a84067d603d3b23nvdRelease Notes
News mentions
0No linked articles in our index yet.