CVE-2025-54939

LiteSpeed QUIC (LSQUIC) Library before 4.3.1 has an lsquic_engine_packet_in memory leak.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:litespeedtech:litespeed_web_adc:*:*:*:*:*:*:*:*
cpe:2.3:a:litespeedtech:litespeed_web_server:*:*:*:*:*:*:*:*
cpe:2.3:a:litespeedtech:lsquic:*:*:*:*:*:*:*:*
cpe:2.3:a:litespeedtech:openlitespeed:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-08-01 06:15

Updated : 2025-08-27 15:52


NVD link : CVE-2025-54939

Mitre link : CVE-2025-54939

CVE.ORG link : CVE-2025-54939


JSON object : View

Products Affected

litespeedtech

  • litespeed_web_adc
  • lsquic
  • openlitespeed
  • litespeed_web_server
CWE
CWE-770

Allocation of Resources Without Limits or Throttling

CWE-401

Missing Release of Memory after Effective Lifetime