yocto ▾
›
scarthgap ▾
›
vulnerability
›
CVE-2025-25066
Component Overview
Vulnerability Overview
Name
CVE-2025-25066
Source
NVD (
link
)
Debian (
link
)
Description
nDPI through 4.12 has a potential stack-based buffer overflow in ndpi_address_cache_restore in lib/ndpi_cache.c.
CWEs
CWE-121
Published Date
Feb 3, 2025
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://github.com/ntop/nDPI/commit/678697b5eb6c3caa5dd5f8cccfe9eed8d13b94bb
Patch
Analysis
#
Affected Component
Analysis
ndpi
False Positive
Vulnerability Ratings
#
8.1
CVSSv31
8.4
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
libndpi
openwrt
master
5.0-r1
Not Affected
ndpi
yocto
kirkstone
4.2
Not Affected
ndpi
yocto
master
5.0
Not Affected