CVE-2025-66909 (CNNVD-202512-3821)
中文标题:
turms 安全漏洞
英文标题:
Turms AI-Serving module v0.10.0-SNAPSHOT and earlier contains an image decompression bomb denial of ...
漏洞描述
中文描述:
turms是turms-im开源的一个即时通讯引擎。 turms AI-Serving module v0.10.0-SNAPSHOT及之前版本存在安全漏洞,该漏洞源于图像解压缩炸弹,可能导致拒绝服务。
英文描述:
Turms AI-Serving module v0.10.0-SNAPSHOT and earlier contains an image decompression bomb denial of service vulnerability. The ExtendedOpenCVImage class in ai/djl/opencv/ExtendedOpenCVImage.java loads images using OpenCV's imread() function without validating dimensions or pixel count before decompression. An attacker can upload a specially crafted compressed image file (e.g., PNG) that is small when compressed but expands to gigabytes of memory when loaded. This causes immediate memory exhaustion, OutOfMemoryError, and service crash. No authentication is required if the OCR service is publicly accessible. Multiple requests can completely deny service availability.
CWE类型:
标签:
受影响产品
| 厂商 | 产品 | 版本 | 版本范围 | 平台 | CPE |
|---|---|---|---|---|---|
| turms-im | turms | 0.10.0-snapshot | - | - |
cpe:2.3:a:turms-im:turms:0.10.0-snapshot:*:*:*:*:*:*:*
|
解决方案
中文解决方案:
英文解决方案:
临时解决方案:
CVSS评分详情
3.1 (adp)
HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
时间信息
利用信息
数据源详情
| 数据源 | 记录ID | 版本 | 提取时间 |
|---|---|---|---|
| CVE | cve_CVE-2025-66909 |
2025-12-21 02:11:30 | 2026-01-12 02:12:26 |
| NVD | nvd_CVE-2025-66909 |
2026-01-03 03:00:09 | 2026-01-12 02:28:05 |
| CNNVD | cnnvd_CNNVD-202512-3821 |
2026-01-11 06:15:03 | 2026-01-12 02:38:04 |
版本与语言
安全公告
变更历史
查看详细变更
- vulnerability_type: 未提取 -> 其他
- cnnvd_id: 未提取 -> CNNVD-202512-3821
- data_sources: ['cve', 'nvd'] -> ['cnnvd', 'cve', 'nvd']
查看详细变更
- affected_products_count: 0 -> 1
- data_sources: ['cve'] -> ['cve', 'nvd']