Issue summary: Remote peer may exhaust heap memory of the QUIC server or client by flooding it with packets containing P
An authenticated user can cause excess memory usage via bitwise match expression AST processing of $bitsAllSet, $bitsAny
Using expressions that generate large arrays it is possible to craft a query that creates very large intermediate object
Improperly controlled sequential memory allocation vulnerability in Samsung Open Source rlottie allows Exponential Data
Dissection engine LZ77 decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Dissection engine zlib decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
SMB2 protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
WebSocket protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
USB HID protocol dissector memory exhaustion in Wireshark 4.6.0 to 4.6.3 and 4.4.0 to 4.4.13 allows denial of service
Improperly Controlled Sequential Memory Allocation vulnerability in foxinmy weixin4j (weixin4j-base/src/main/java/com/fo
veraPDF PDF parser is a PDF parser for veraPDF. Prior to 1.30.2 and 1.31.23, veraPDF-parser contains a denial-of-service
veraPDF PDF parser is a PDF parser for veraPDF. Prior to 1.30.2 and 1.31.23, veraPDF-parser contains a denial-of-service
Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. From version 10.
Frequently Asked Questions
What is CWE-1325?
CWE-1325 (CWE-1325) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-1325?
There are 13 CVE records associated with CWE-1325 in our database. Of these, 0 are critical severity, 1 are high severity, and 8 are medium severity.
How can I protect against CWE-1325 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-1325 using AI-powered security agents.
Detect CWE-1325 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-1325 vulnerabilities across your infrastructure.
Get Started