Wind River Support Network

HomeDefectsLIN1023-16768
Acknowledged

LIN1023-16768 : Security Advisory - libmicrohttpd - CVE-2025-62689

Created: Nov 10, 2025    Updated: Nov 13, 2025
Found In Version: 10.23.30.1
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Userspace

Description

NULL pointer dereference vulnerability exists in GNU libmicrohttpd v1.0.2 and earlier. The vulnerability was fixed in commit ff13abc on the master branch of the libmicrohttpd Git repository, after the v1.0.2 tag. A specially crafted packet sent by an attacker could cause a denial-of-service (DoS) condition.
Live chat
Online