CVE-2025-14591: PII Leak Due to Change in EOR Handling
In Delphix Continuous Compliance version 2025.3.0 and later, following a recent bug fix to correctly handle CR+LF (Windows and DOS) End-of-Record (EOR) characters in delimited files, an issue was identified: using an incorrect EOR configuration can cause inaccurate parsing and leave personally identifiable information (PII) unmasked.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-14591?
CVE-2025-14591 has been classified with a high severity due to the potential exposure of personally identifiable information (PII).
How do I fix CVE-2025-14591?
To fix CVE-2025-14591, ensure that your EOR configuration is correctly set to avoid inaccurate parsing of delimited files.
What does CVE-2025-14591 affect?
CVE-2025-14591 specifically affects Delphix Continuous Compliance and can lead to unmasked PII due to incorrect EOR handling.
What are the potential risks associated with CVE-2025-14591?
The potential risks include exposure of sensitive personal information and compliance violations due to data leakage.
When was CVE-2025-14591 discovered?
CVE-2025-14591 was identified following a bug fix related to the handling of EOR characters in delimited files.