CVE-2025-24970
ADVISORY - githubSummary
Impact
When a special crafted packet is received via SslHandler it doesn't correctly handle validation of such a packet in all cases which can lead to a native crash.
Workarounds
As workaround its possible to either disable the usage of the native SSLEngine or changing the code from:
SslContext context = ...;
SslHandler handler = context.newHandler(....);
to:
SslContext context = ...;
SSLEngine engine = context.newEngine(....);
SslHandler handler = new SslHandler(engine, ....);
Common Weakness Enumeration (CWE)
Improper Input Validation
Improper Input Validation
Improper Input Validation
NIST
3.9
CVSS SCORE
7.5highGitHub
3.9
CVSS SCORE
7.5highDebian
-
CVSS SCORE
N/AlowUbuntu
-
CVSS SCORE
N/AmediumRed Hat
3.9
CVSS SCORE
7.5highChainguard
CGA-2rmr-wmhc-2w99
-
Chainguard
CGA-2vcf-4382-jhfc
-
Chainguard
CGA-3ff3-j2gh-ch6w
-
Chainguard
CGA-3jwq-p88x-m4p3
-
Chainguard
CGA-4c9r-4w8v-hrg9
-
Chainguard
CGA-4fc4-gx3h-pr85
-
Chainguard
CGA-4vhm-8vvc-xp32
-
Chainguard
CGA-5j2r-r3qg-5f8j
-
Chainguard
CGA-5w34-p6wm-7m57
-
Chainguard
CGA-68qf-mr28-mmx7
-
Chainguard
CGA-6xxq-cf3f-jrfr
-
Chainguard
CGA-75hc-h3fm-76g3
-
Chainguard
CGA-77xw-mv88-q2mp
-
Chainguard
CGA-83p5-p2hp-xv5g
-
Chainguard
CGA-8c62-7m56-h34v
-
Chainguard
CGA-8qcx-xrm8-v435
-
Chainguard
CGA-92vf-fmhh-m858
-
Chainguard
CGA-9cfj-2vcq-2qmg
-
Chainguard
CGA-f8r8-7qpm-75vh
-
Chainguard
CGA-fqjm-6q25-rq8p
-
Chainguard
CGA-g9f5-gvgx-jg3v
-
Chainguard
CGA-gj2p-246v-gxg2
-
Chainguard
CGA-hvvp-w5fp-mfj3
-
Chainguard
CGA-j8xg-6jx2-4hqr
-
Chainguard
CGA-mmhh-v4mx-9jrm
-
Chainguard
CGA-mqq6-jcf2-j7wq
-
Chainguard
CGA-p2qw-967j-8x9x
-
Chainguard
CGA-pgmf-2qrp-2664
-
Chainguard
CGA-pvmc-36v5-xpxp
-
Chainguard
CGA-pxx2-j5vx-hpc7
-
Chainguard
CGA-q4fc-47cm-pg7p
-
Chainguard
CGA-q847-pq59-hvfv
-
Chainguard
CGA-q9c2-r23v-8mr4
-
Chainguard
CGA-v2hv-cwjf-vh29
-
Chainguard
CGA-v56f-9x62-8x8w
-
Chainguard
CGA-vcq5-fc6j-cwhq
-
Chainguard
CGA-vf2m-7hcr-4jvh
-
Chainguard
CGA-vpqx-mv83-m9q3
-
Chainguard
CGA-vxw2-mqpj-vp92
-
Chainguard
CGA-w7hc-8fp9-mm8j
-
Chainguard
CGA-xgr5-r3g8-6j8q
-
Chainguard
CGA-xvj3-hqwc-49qg
-
minimos
MINI-32cg-hcfj-v739
-
minimos
MINI-3ch5-j3fv-cg29
-
minimos
MINI-3qxq-gw25-4gg3
-
minimos
MINI-5pvm-2qhq-4hfp
-
minimos
MINI-73qh-2hq7-vr8m
-
minimos
MINI-cc9v-c3w2-wf9h
-
minimos
MINI-gw9j-vg66-x3jq
-
minimos
MINI-r4w8-wrjh-c595
-
minimos
MINI-v82w-gc28-7j8f
-
minimos
MINI-wpxw-5237-hp65
-
minimos
MINI-xpx9-x3x2-424m
-