CVE-2025-25066

EUVD-2025-4008
nDPI through 4.12 has a potential stack-based buffer overflow in ndpi_address_cache_restore in lib/ndpi_cache.c.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.1 HIGH
LOCAL
HIGH
NONE
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 7.64%
Affected Products (NVD)
VendorProductVersion
ntopndpi
𝑥
≤ 4.12
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
ndpi
bookworm
4.2-2
fixed
forky
4.2-2.1
fixed
sid
4.2-2.1
fixed
trixie
4.2-2.1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
ndpi
bionic
needs-triage
focal
needs-triage
jammy
needs-triage
noble
needs-triage
oracular
ignored
plucky
ignored
questing
ignored
resolute
needs-triage
xenial
needs-triage