Medium severity4.3NVD Advisory· Published Nov 24, 2025· Updated Jun 17, 2026
CVE-2025-65502
CVE-2025-65502
Description
Null pointer dereference in add_ca_certs() in Cesanta Mongoose before 7.2 allows remote attackers to cause a denial of service via TLS initialization where SSL_CTX_get_cert_store() returns NULL.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
2- github.com/cesanta/mongoose/pull/3307nvdIssue TrackingPatch
- github.com/cesanta/mongoose/issues/3306nvdExploitIssue Tracking
News mentions
0No linked articles in our index yet.