CNNVD-202507-1694 Information

CNNVD ID

CNNVD-202507-1694

CVE-2025-53636

  • CNNVD Published: 2025-07-11

Description (Chinese)

Osc Open OnDemand是美国Osc开源组织的一个应用软件。提供一个用于访问HPC服务。 Osc Open OnDemand 3.1.14之前版本和4.0.6之前版本存在安全漏洞,该漏洞源于日志处理不当,可能导致拒绝服务攻击。

Description (English)

Osc Open OnDemand is an application of Osc Open Source Organization of the United States. Provide a service to visit HPC. There was a security loophole in previous versions of Osc Open OnDemand 3.1.14 and before 4.0.6, which stemmed from inappropriate log handling and could lead to a denial of service attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Osc

Published

2025-07-11

Last Modified

2026-02-24

References

https://github.com/OSC/ondemand/commit/40800d68cd019c5f1c48b2deafebba6dff4abee2 https://github.com/OSC/ondemand/commit/96f29b995e1add7562516614e4dc8d961987e8b4 https://github.com/OSC/ondemand/security/advisories/GHSA-x5xv-fw37-v524 https://access.redhat.com/security/cve/cve-2025-53636

Patch

https://github.com/OSC/ondemand/releases

Share on: