IBM Concert Software 1.0.0 through 1.1.0 could allow a remote attacker to cause a denial of service using a specially crafted regular expression that would cause excessive resource consumption.
Advisories
Source ID Title
EUVD EUVD EUVD-2025-27842 IBM Concert Software 1.0.0 through 1.1.0 could allow a remote attacker to cause a denial of service using a specially crafted regular expression that would cause excessive resource consumption.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Thu, 21 Aug 2025 19:30:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:ibm:concert:*:*:*:*:*:*:*:*

Mon, 18 Aug 2025 14:15:00 +0000

Type Values Removed Values Added
Description IBM Concert Software 1.0.0 through 1.1.0 could allow a remote attacker to cause a denial of service using a specially crafted regular expression that would cause excessive resource consumption.
Title IBM Concert Software denial of service
First Time appeared Ibm
Ibm concert
Weaknesses CWE-1333
CPEs cpe:2.3:a:ibm:concert:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:concert:1.0.1:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm concert
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2025-08-18T14:09:20.940Z

Reserved: 2025-04-15T17:50:31.397Z

Link: CVE-2025-33090

cve-icon Vulnrichment

Updated: 2025-08-18T14:09:10.497Z

cve-icon NVD

Status : Analyzed

Published: 2025-08-18T14:15:28.897

Modified: 2025-08-21T19:25:23.490

Link: CVE-2025-33090

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.