Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-f786-75f3-74xj | OSV-SCALIBR has NULL Pointer Dereference |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 21 Nov 2025 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
cvssV3_1
|
Thu, 20 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 20 Nov 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A bug in the filesystem traversal fallback path causes fs/diriterate/diriterate.go:Next() to overindex an empty slice when ReadDir returns nil for an empty directory, resulting in a panic (index out of range) and an application crash (denial of service) in OSV-SCALIBR. | |
| Title | Denial of Service in OSV-SCALIBR | |
| Weaknesses | CWE-476 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Google
Published:
Updated: 2025-11-20T16:24:21.448Z
Reserved: 2025-11-19T16:07:19.171Z
Link: CVE-2025-13425
Updated: 2025-11-20T16:24:18.059Z
Status : Received
Published: 2025-11-20T16:15:56.793
Modified: 2025-11-20T16:15:56.793
Link: CVE-2025-13425
OpenCVE Enrichment
No data.
Github GHSA