Pypi · Py-Libp2P · CVE-2025-29606
Name of the Vulnerable Software and Affected Versions:
py-libp2p versions prior to 0.2.3
Description:
py-libp2p versions prior to 0.2.3 are susceptible to a denial of service (resource consumption) issue. This occurs when a peer sends a large RSA key.
Recommendations:
Update py-libp2p to version 0.2.3 or later.