Wind River Support Network

HomeDefectsLIN1025-5836
Acknowledged

LIN1025-5836 : Security Advisory - libmicrohttpd - CVE-2025-62689

Created: Nov 10, 2025    Updated: Nov 13, 2025
Found In Version: 10.25.33.1
Severity: Standard
Applicable for: Wind River Linux LTS 25
Component/s: Userspace

Description

NULL pointer dereference vulnerability exists in GNU libmicrohttpd v1.0.2 and earlier. The vulnerability was fixed in commit ff13abc on the master branch of the libmicrohttpd Git repository, after the v1.0.2 tag. A specially crafted packet sent by an attacker could cause a denial-of-service (DoS) condition.
Live chat
Online