You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve 2025 62813
About this tag
CVE-2025-62813 is a denial-of-service vulnerability in the LZ4 compression library affecting releases through v1.10.0. The flaw stems from improper NULL handling inside the frame API and has been fixed upstream with a small defensive change. LZ4 is widely used across operating systems, applications, and embedded devices for fast lossless compression. Operators and integrators should treat this as a pragmatic stability and supply-chain risk, applying the upstream patch to mitigate potential DoS attacks. The tag covers discussion of the vulnerability's impact, affected versions, and remediation guidance for Windows and other platforms that incorporate LZ4.
LZ4 users and integrators should treat a recently published flaw as a pragmatic stability and supply‑chain risk: CVE‑2025‑62813 is a denial‑of‑service vulnerability in the widely used LZ4 library that affects releases through v1.10.0, rooted in improper NULL handling inside the frame API and...