Unrated severityOSV Advisory· Published Jan 29, 2026· Updated Feb 2, 2026
CVE-2025-63649
CVE-2025-63649
Description
An out-of-bounds read in the http_parser_transfer_encoding_chunked function (mk_server/mk_http_parser.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted POST request to the server.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2test-v1.5.5, v0.10.0, v0.10.0-rc1, …+ 1 more
- (no CPE)range: test-v1.5.5, v0.10.0, v0.10.0-rc1, …
- (no CPE)range: <= commit f37e984
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.