CVE-2025-13425
EUVD-2025-19830020.11.2025, 16:15
A bug in the filesystem traversal fallback path causes fs/diriterate/diriterate.go:Next() to overindex an empty slice when ReadDir returns nil for an empty directory, resulting in a panic (index out of range) and an application crash (denial of service) in OSV-SCALIBR.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| osv-scalibr | 𝑥 < 0.3.4 | CNA |
Common Weakness Enumeration