CVE-2025-24947 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A hash collision vulnerability (in the hash table used to manage connections) in LSQUIC (aka LiteSpeed QUIC) before 4.2.0 allows remote attackers to cause a con…
Medium CVSS: 5.3

CVE-2025-24947

A hash collision vulnerability (in the hash table used to manage connections) in LSQUIC (aka LiteSpeed QUIC) before 4.2.0 allows remote attackers to cause a considerable CPU load on the server (a Hash DoS attack) by initiating connections with colliding Source Connection IDs (SCIDs). This is caused by XXH32 usage.
Vendor
-
Product
-
CWE
CWE-407
Yayın Tarihi
2025-02-20 03:15:12
Güncelleme
2025-02-20 03:15:12
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar