NONE · 0

CVE-2025-11678

Stack-based Buffer Overflow in lws_adns_parse_label in warmcat libwebsockets allows, when the LWS_WITH_SYS_ASYNC_DNS flag is enabled during compilation, to overflow the label_stack, when the attacker ...

Vulnerability Description

Stack-based Buffer Overflow in lws_adns_parse_label in warmcat libwebsockets allows, when the LWS_WITH_SYS_ASYNC_DNS flag is enabled during compilation, to overflow the label_stack, when the attacker is able to sniff a DNS request in order to craft a response with a matching id containing a label longer than the maximum.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2025-11678?

CVE-2025-11678 is a documented vulnerability. Stack-based Buffer Overflow in lws_adns_parse_label in warmcat libwebsockets allows, when the LWS_WITH_SYS_ASYNC_DNS flag is enabled during compilation, to overflow the label_stack, when the attacker ...

How severe is CVE-2025-11678?

CVSS scoring is not yet available for CVE-2025-11678. Check NVD for updates.

Is there a patch for CVE-2025-11678?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.