6.5
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Description
Net::Dropbear versions through 0.16 for Perl contains a dependency that may be susceptible to an integer overflow.
Net::Dropbear embeds a version of the libtommath library that is susceptible to an integer overflow associated with CVE-2023-36328.
Net::Dropbear embeds a version of the libtommath library that is susceptible to an integer overflow associated with CVE-2023-36328.
Basic Information
ID
CVE-2025-40913
Source
CPANSec
Published
Jul 16, 2025 at 14:05
Modified
Jul 16, 2025 at 20:50
Affected Product
Vendor
ATRODO
Product
Net::Dropbear
Version
0.01
Affected Versions
ATRODO Net::Dropbear 0.01