CVE-2025-66379: Input Validation
Published Dec 25, 2025
·Updated
Pexip Infinity before 39.0 has Improper Input Validation in the media implementation, allowing a remote attacker to trigger a software abort via a crafted media stream, resulting in a denial of service.
Affected Software
2 affected components
Pexip Pexip Infinity<39.0
Pexip Pexip Infinity<39.0
Event History
Dec 25, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:16 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-66379?
CVE-2025-66379 is classified as a denial of service vulnerability due to improper input validation in Pexip Infinity.
2
How do I fix CVE-2025-66379?
To remediate CVE-2025-66379, upgrade Pexip Infinity to version 39.0 or later.
3
Who is affected by CVE-2025-66379?
CVE-2025-66379 affects users running Pexip Infinity versions prior to 39.0.
4
What is the impact of CVE-2025-66379?
The impact of CVE-2025-66379 allows a remote attacker to trigger a software abort, leading to a denial of service.
5
When was CVE-2025-66379 published?
CVE-2025-66379 was published as part of the vulnerability disclosures for Pexip Infinity.