CVE-2025-23166

Aliases:RHSA-2025:8902DEBIAN-CVE-2025-23166ALPINE-CVE-2025-23166CGA-72rv-6459-558xCGA-74r5-xvmj-hrchCGA-f37p-f56r-gcf6CGA-fr9v-h5pp-f635CGA-gj3p-p623-gx9fCGA-mhhv-7rxj-cwjg
Deferred
Published: 19 May 2025, 01:25
Last modified:28 May 2025, 00:07

Vulnerability Summary

Overall Risk (default)
medium
30/100
CVSS Score
7.5 HIGH
v3.0 (cve.org)
EPSS Score
0.81% LOW
1% probability +0.77%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

19 May 2025, 01:25
Published
Vulnerability first disclosed
28 May 2025, 00:07
Last Modified
Vulnerability information updated

Description

The C++ method SignTraits::DeriveBits() may incorrectly call ThrowException() based on user-supplied inputs when executing in a background thread, crashing the Node.js process. Such cryptographic operations are commonly applied to untrusted inputs. Thus, this mechanism potentially allows an adversary to remotely crash a Node.js runtime.

CVSS Metrics

  • v3.0HIGHScore: 7.5CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS Trends

Current EPSS score: 0.81% Percentile: 55%

Techniques & Countermeasures

  • CWE-248Uncaught Exception

    An exception is thrown from a function, but it is not caught.

Affected Systems

  • alpinenodejs

    < 22.15.1-r0 | < 22.16.0-r0 | < 22.16.0-r0 | < 22.16.0-r0

  • chainguardnodejs-16

    < 16.20.2-r15

  • chainguardnodejs-18

    all

  • chainguardnodejs-21

    < 21.7.3-r12

  • wolfinodejs-16

    < 16.20.2-r15

  • wolfinodejs-18

    all

  • wolfinodejs-21

    < 21.7.3-r12

  • debiannodejs

    < 18.20.4+dfsg-1~deb12u2 | < 20.19.2+dfsg-1 | < 20.19.2+dfsg-1

  • nodejsnode

    ≥ 4.0, < 4.* | ≥ 5.0, < 5.* | ≥ 6.0, < 6.* | ≥ 7.0, < 7.* | ≥ 8.0, < 8.* | ≥ 9.0, < 9.* | ≥ 10.0, < 10.* | ≥ 11.0, < 11.* | ≥ 12.0, < 12.* | ≥ 13.0, < 13.* | ≥ 14.0, < 14.* | ≥ 15.0, < 15.* | ≥ 16.0, < 16.* | ≥ 17.0, < 17.* | ≥ 18.0, < 18.* | ≥ 19.0, < 19.* | ≥ 20.0, ≤ 20.19.1 | ≥ 22.0, ≤ 22.15.0 | ≥ 23.0, ≤ 23.11.0 | ≥ 24.0, ≤ 24.0.1 | ≥ 21.0, < 21.*

  • redhatnodejs

    < 1:20.19.2-2.module+el9.4.0+23180+d266bac7

  • redhatnodejs-debuginfo

    < 1:20.19.2-2.module+el9.4.0+23180+d266bac7

  • redhatnodejs-debugsource

    < 1:20.19.2-2.module+el9.4.0+23180+d266bac7

  • redhatnodejs-devel

    < 1:20.19.2-2.module+el9.4.0+23180+d266bac7

  • redhatnodejs-docs

    < 1:20.19.2-2.module+el9.4.0+23180+d266bac7

  • redhatnodejs-full-i18n

    < 1:20.19.2-2.module+el9.4.0+23180+d266bac7

  • redhatnodejs-nodemon

    < 0:3.0.1-1.module+el9.3.0.z+20478+84a9f781

  • redhatnodejs-packaging

    < 0:2021.06-4.module+el9.3.0+19518+63aad52d

  • redhatnodejs-packaging-bundler

    < 0:2021.06-4.module+el9.3.0+19518+63aad52d

  • redhatnpm

    < 1:10.8.2-1.20.19.2.2.module+el9.4.0+23180+d266bac7

References (10)