Published November 19, 2025
Severity HIGH
CNA Score 7.5
Affected Technologies
HAProxy
Alibaba Cloud Linux (Aliyun Linux)
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 60.4
Exploitation Probability (EPSS) 0.4
Affected packages and libraries
Sources
AlmaLinux Security Advisory
AlmaLinux 9 Severity HIGHHas FixAdded at: Nov 20, 2025
CBL-Mariner
CBL-Mariner 2.0 Severity MEDIUMHas FixAdded at: Dec 18, 2025
CBL-Mariner 3.0 Severity MEDIUMHas FixAdded at: Dec 17, 2025
Chainguard
Chainguard Has FixAdded at: Dec 22, 2025
Debian Security Tracker
Debian 12, 13, 14 Severity HIGHHas FixAdded at: Oct 05, 2025
Echo
Echo Severity HIGHHas FixAdded at: Nov 18, 2025
Homebrew
Homebrew Severity HIGHHas FixAdded at: Dec 22, 2025
Minimus
MinimOS Severity HIGHHas FixAdded at: Dec 22, 2025
Nix
Nix Severity HIGHHas FixAdded at: Dec 22, 2025
Red Hat Errata
Red Hat 7, 8 Severity HIGHNo FixAdded at: Nov 09, 2025
Red Hat 9 Severity HIGHHas FixAdded at: Nov 09, 2025
Red Hat 10 Severity HIGHHas FixAdded at: Nov 09, 2025
Rocky Linux Product Errata
Rocky 9 Severity HIGHHas FixAdded at: Dec 02, 2025
Rocky 10 Severity HIGHHas FixAdded at: Nov 30, 2025
TuxCare
AlmaLinux 9.2 Severity HIGHHas FixAdded at: Nov 30, 2025
Ubuntu Security Tracker
Ubuntu 22.04, 24.04, 25.04 Severity MEDIUMHas FixAdded at: Oct 07, 2025
Wolfi
Wolfi No FixAdded at: Dec 22, 2025
NVD
Linux Severity HIGHHas FixAdded at: Dec 22, 2025