CVE-2025-66382

In libexpat through 2.7.3, a crafted file with an approximate size of 2 MiB can lead to dozens of seconds of processing time.
Configurations

Configuration 1 (hide)

cpe:2.3:a:libexpat_project:libexpat:*:*:*:*:*:*:*:*

History

19 Dec 2025, 16:05

Type Values Removed Values Added
References () https://github.com/libexpat/libexpat/issues/1076 - () https://github.com/libexpat/libexpat/issues/1076 - Issue Tracking
References () http://www.openwall.com/lists/oss-security/2025/12/02/1 - () http://www.openwall.com/lists/oss-security/2025/12/02/1 - Mailing List
First Time Libexpat Project libexpat
Libexpat Project
CPE cpe:2.3:a:libexpat_project:libexpat:*:*:*:*:*:*:*:*

02 Dec 2025, 03:16

Type Values Removed Values Added
References
  • () http://www.openwall.com/lists/oss-security/2025/12/02/1 -

28 Nov 2025, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-28 07:15

Updated : 2025-12-19 16:05


NVD link : CVE-2025-66382

Mitre link : CVE-2025-66382

CVE.ORG link : CVE-2025-66382


JSON object : View

Products Affected

libexpat_project

  • libexpat
CWE
CWE-407

Inefficient Algorithmic Complexity