https://seclists.org/oss-sec/2025/q3/154: CVE-2025-40929: Cpanel::JSON::XS befoversion 4.40 for Perl has an integer buffer overflow causing a segfault when parsing crafted JSON, enabling denial-of-service attacks or other unspecified impact
Published Sep 8, 2025
·Updated
Affected Software
1 affected component
Cpanel Cpanel-JSON-XS<4.40
Frequently Asked Questions
1
What is the severity of CVE-2025-40929?
CVE-2025-40929 has a severity rating that indicates it can lead to a denial-of-service attack due to an integer buffer overflow.
2
How do I fix CVE-2025-40929?
To fix CVE-2025-40929, upgrade Cpanel::JSON::XS to version 4.40 or later.
3
What software is affected by CVE-2025-40929?
CVE-2025-40929 affects the Cpanel-JSON-XS software prior to version 4.40.
4
What type of vulnerability is CVE-2025-40929?
CVE-2025-40929 is an integer buffer overflow vulnerability that can cause a segmentation fault.
5
What is the impact of CVE-2025-40929?
The impact of CVE-2025-40929 includes potential denial-of-service attacks when parsing crafted JSON.