CVE-2025-12601: Denial of Service Due to SlowLoris
Published Nov 1, 2025
·Updated
Denial of Service Due to SlowLoris.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
Affected Software
6 affected components
BLU BLU-IC2<=1.19.5
BLU BLU-IC4<=1.19.5
All of the following
Azure-access Blu-ic2 Firmware<1.20
Azure-access Blu-ic2
All of the following
Azure-access Blu-ic4 Firmware<1.20
Azure-access Blu-ic4
Event History
Nov 1, 2025
CVE Published
via MITRE·06:49 PM
Data Sourced
via MITRE·06:49 PM
DescriptionWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-12601?
CVE-2025-12601 is classified as a denial of service vulnerability due to SlowLoris attacks.
2
Which versions of software are affected by CVE-2025-12601?
CVE-2025-12601 affects BLU-IC2 and BLU-IC4 versions up to and including 1.19.5.
3
How do I fix CVE-2025-12601?
To mitigate CVE-2025-12601, update BLU-IC2 and BLU-IC4 to the latest versions beyond 1.19.5.
4
What type of attack does CVE-2025-12601 describe?
CVE-2025-12601 describes a SlowLoris attack that aims to exhaust server resources.
5
What are the potential impacts of CVE-2025-12601?
The potential impacts of CVE-2025-12601 include service interruptions and denial of access for legitimate users.