CNNVD-202507-3816 Information

CNNVD ID

CNNVD-202507-3816

CVE-2025-54581

  • CNNVD Published: 2025-07-30

Description (Chinese)

vproxy是0x676e67个人开发者的一个高性能的HTTP/HTTPS/SOCKS5代理服务器软件。 vproxy 2.3.3及之前版本存在数字错误漏洞,该漏洞源于处理Proxy-Authorization标头时可能导致除零崩溃,导致拒绝服务。

Description (English)

vproxy is a high-performance HTTP/HTTPS/SOCKS5 proxy server software for 0x676e67 individual developers. vproxy 2.3.3 and previous versions had a digital error loophole, which arose from the possibility of a zero-bust breakdown in the processing of Proxy-Authorization markers, leading to the denial of services.

Hazard Level

Medium

Vulnerability Type

数字错误

Affected Vendor

个人开发者

Published

2025-07-30

Last Modified

2026-02-24

References

https://github.com/0x676e67/vproxy/commit/aa1bf64c5e7f1c471395f9f29175ffc1b16a1079 https://github.com/0x676e67/vproxy/releases/tag/v2.4.0 https://github.com/0x676e67/vproxy/security/advisories/GHSA-7h24-c332-p48c

Patch

https://github.com/0x676e67/vproxy/releases

Share on: