CNNVD-202506-2617 Information

CNNVD ID

CNNVD-202506-2617

CVE-2025-48058

  • CNNVD Published: 2025-06-20

Description (Chinese)

PowSyBl是PowSyBl公司的一个专门用于电力系统的建模和仿真的开源框架。 PowSyBl 6.7.2之前版本存在安全漏洞,该漏洞源于DataSource机制存在正则表达式拒绝服务漏洞,可能导致CPU消耗过高。

Description (English)

PowSyBl is a virtual open-source framework dedicated to power systems by PowSyBl. The security gap in the pre-PowSyBl 6.7.2 version stems from the formal expression of denial of services in the DataSource mechanism, which could lead to overconsumption of the CPU.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

PowSyBl

Published

2025-06-20

Last Modified

2026-02-24

References

https://github.com/powsybl/powsybl-core/commit/72f79dec6d4292f892fbddd68a19c67935c7d81f https://github.com/powsybl/powsybl-core/releases/tag/v6.7.2 https://github.com/powsybl/powsybl-core/security/advisories/GHSA-rqpx-f6rc-7hm5

Patch

https://github.com/powsybl/powsybl-core/releases

Share on: