CVE-2025-23165

EUVD-2025-15708
In Node.js, the `ReadFileUtf8` internal binding leaks memory due to a corrupted pointer in `uv_fs_s.file`: a UTF-16 path buffer is allocated but subsequently overwritten when the file descriptor is set. This results in an unrecoverable memory leak on every call. Repeated use can cause unbounded memory growth, leading to a denial of service.

Impact:
* This vulnerability affects APIs relying on `ReadFileUtf8` on Node.js release lines: v20 and v22.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
3.7 LOW
NETWORK
HIGH
NONE
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: 68%
Debian logo
Debian Releases
Debian Product
Codename
nodejs
bookworm
18.20.4+dfsg-1~deb12u1
fixed
bookworm (security)
18.20.4+dfsg-1~deb12u2
fixed
bullseye
12.22.12~dfsg-1~deb11u4
fixed
bullseye (security)
12.22.12~dfsg-1~deb11u8
fixed
forky
24.15.0+dfsg+~cs24.12.2-1
fixed
sid
24.15.0+dfsg+~cs24.12.2-1
fixed
trixie
20.19.2+dfsg-1+deb13u2
fixed
trixie (security)
20.19.2+dfsg-1+deb13u2
fixed
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
nodejs20
suse enterprise sap 15 SP6
20.19.2-150600.3.12.1
fixed
suse enterprise server 15 SP5
20.19.2-150500.11.21.1
fixed
suse enterprise server 15 SP6
20.19.2-150600.3.12.1
fixed
nodejs20-devel
suse enterprise sap 15 SP6
20.19.2-150600.3.12.1
fixed
suse enterprise server 15 SP5
20.19.2-150500.11.21.1
fixed
suse enterprise server 15 SP6
20.19.2-150600.3.12.1
fixed
nodejs20-docs
suse enterprise sap 15 SP6
20.19.2-150600.3.12.1
fixed
suse enterprise server 15 SP5
20.19.2-150500.11.21.1
fixed
suse enterprise server 15 SP6
20.19.2-150600.3.12.1
fixed
nodejs22
suse enterprise sap 15 SP6
22.15.1-150600.13.9.1
fixed
suse enterprise sap 15 SP7
22.15.1-150700.3.3.1
fixed
suse enterprise server 15 SP6
22.15.1-150600.13.9.1
fixed
suse enterprise server 15 SP7
22.15.1-150700.3.3.1
fixed
nodejs22-devel
suse enterprise sap 15 SP6
22.15.1-150600.13.9.1
fixed
suse enterprise sap 15 SP7
22.15.1-150700.3.3.1
fixed
suse enterprise server 15 SP6
22.15.1-150600.13.9.1
fixed
suse enterprise server 15 SP7
22.15.1-150700.3.3.1
fixed
nodejs22-docs
suse enterprise sap 15 SP6
22.15.1-150600.13.9.1
fixed
suse enterprise sap 15 SP7
22.15.1-150700.3.3.1
fixed
suse enterprise server 15 SP6
22.15.1-150600.13.9.1
fixed
suse enterprise server 15 SP7
22.15.1-150700.3.3.1
fixed
npm20
suse enterprise sap 15 SP6
20.19.2-150600.3.12.1
fixed
suse enterprise server 15 SP5
20.19.2-150500.11.21.1
fixed
suse enterprise server 15 SP6
20.19.2-150600.3.12.1
fixed
npm22
suse enterprise sap 15 SP6
22.15.1-150600.13.9.1
fixed
suse enterprise sap 15 SP7
22.15.1-150700.3.3.1
fixed
suse enterprise server 15 SP6
22.15.1-150600.13.9.1
fixed
suse enterprise server 15 SP7
22.15.1-150700.3.3.1
fixed