CVE-2025-32095

Pexip Infinity before 37.0 has improper input validation in signalling that allows a remote attacker to trigger a software abort via a crafted signalling message, resulting in a denial of service.

high 7.5 CVSS 3.1
Published: Dec 25, 2025
Modified: Jan 5, 2026
Vendor: Pexip
Product: Pexip Infinity

Description

Pexip Infinity before 37.0 has improper input validation in signalling that allows a remote attacker to trigger a software abort via a crafted signalling message, resulting in a denial of service.

References

Related CVEs