PT-2025-36473 · Json::Xs+8 · Json::Xs+8
Michael Hudak
·
Published
2025-09-08
·
Updated
2025-11-13
·
CVE-2025-40928
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions:
JSON::XS versions prior to 4.04
Description:
JSON::XS, a Perl module, contains an integer buffer overflow that can lead to a segmentation fault when processing specially crafted JSON data. This issue may result in denial-of-service attacks.
Recommendations:
Update JSON::XS to version 4.04 or later.
Fix
DoS
Heap Based Buffer Overflow
Integer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Almalinux
Centos
Debian
Json::Xs
Linuxmint
Red Hat
Red Os
Rocky Linux
Ubuntu