PT-2025-25234 · Cryptx+3 · Cryptx+3
Published
2025-06-11
·
Updated
2026-03-26
·
CVE-2025-40912
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
CryptX for Perl versions prior to 0.065
Description
The issue concerns a potential Unicode vulnerability in CryptX for Perl. It is related to a dependency that may be susceptible to malformed Unicode. Specifically, CryptX embeds the tomcrypt library, and the versions of this library in CryptX before version 0.065 may be affected.
Recommendations
For versions prior to 0.065, update to version 0.065 or later to resolve the issue. As a temporary workaround, consider restricting the use of Unicode characters in inputs to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cryptx
Linuxmint
Ubuntu
Tomcrypt Library