VYPR
Unrated severityNVD Advisory· Published Nov 10, 2025· Updated Nov 14, 2025

CVE-2025-62689

CVE-2025-62689

Description

NULL pointer dereference vulnerability exists in GNU libmicrohttpd v1.0.2 and earlier. The vulnerability was fixed in commit ff13abc on the master branch of the libmicrohttpd Git repository, after the v1.0.2 tag. A specially crafted packet sent by an attacker could cause a denial-of-service (DoS) condition.

Affected products

2
  • Range: <=1.0.2
  • GNU Project/GNU libbmicrohttpdv5
    Range: v1.0.2 and earlier (The vulnerability remains in the source code up until commit ff13abc on the master branch of the libmicrohttpd Git repository

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.