PT-2025-25234 · Cryptx+3 · Cryptx+3

Published

2025-06-11

·

Updated

2026-03-26

·

CVE-2025-40912

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions CryptX for Perl versions prior to 0.065
Description The issue concerns a potential Unicode vulnerability in CryptX for Perl. It is related to a dependency that may be susceptible to malformed Unicode. Specifically, CryptX embeds the tomcrypt library, and the versions of this library in CryptX before version 0.065 may be affected.
Recommendations For versions prior to 0.065, update to version 0.065 or later to resolve the issue. As a temporary workaround, consider restricting the use of Unicode characters in inputs to minimize the risk of exploitation.

Fix

Weakness Enumeration

Related Identifiers

CVE-2025-40912
USN-8128-1

Affected Products

Cryptx
Linuxmint
Ubuntu
Tomcrypt Library