CVE-2025-1695 - NGINX Unit Java Language Module Infinite Loop DoS

CVE ID : CVE-2025-1695 Published : March 4, 2025, 1:15 a.m. | 44 minutes ago Description : In NGINX Unit before version 1.34.2 with the Java Language Module in use, undisclosed requests can lead to an infinite loop and cause an increase in CPU resource utilization. This vulnerability allows a remote attacker to cause a degradation that can lead to a limited denial-of-service (DoS).  There is no control plane exposure; this is a data plane issue only.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Mär 4, 2025 - 03:00
 0  0
CVE-2025-1695 - NGINX Unit Java Language Module Infinite Loop DoS
CVE ID : CVE-2025-1695
Published : March 4, 2025, 1:15 a.m. | 44 minutes ago
Description : In NGINX Unit before version 1.34.2 with the Java Language Module in use, undisclosed requests can lead to an infinite loop and cause an increase in CPU resource utilization. This vulnerability allows a remote attacker to cause a degradation that can lead to a limited denial-of-service (DoS).  There is no control plane exposure; this is a data plane issue only.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...