CVE-2025-3194 Information

Description

Versions of the package bigint-buffer from 0.0.0 are vulnerable to Buffer Overflow in the toBigIntLE() function. Attackers can exploit this to crash the application.

Reference

https://github.com/no2chem/bigint-buffer/blob/master/src/index.ts%23L25 https://security.snyk.io/vuln/SNYK-JS-BIGINTBUFFER-3364597 https://security.snyk.io/vuln/SNYK-JS-BIGINTBUFFER-3364597 https://www.usenix.org/system/files/sec23fall-prepub-262_staicu.pdf

Share on: