Skip to main content

Threats Tagged 'cve-2025-62593'

View all threats tagged with 'cve-2025-62593'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2025-62593

Threats Tagged 'cve-2025-62593'

Click on any threat for detailed analysis and mitigation recommendations

Red Hat® AI Inference Server

Join the discussion

Release of RHOAI 3.3 provides these changes:

Join the discussion

Red Hat OpenShift AI 3.2 includes security updates addressing vulnerabilities identified as CVE-2025-62593 and CVE-2025-66418. The advisory highlights changes in the RHOAI 3.2 release but does not specify detailed fixes for these CVEs. The vulnerabilities relate to weaknesses categorized under CWE-94 (Improper Control of Generation of Code) and CWE-770 (Allocation of Resources Without Limits or Throttling). No known exploits are reported in the wild. Users are advised to upgrade to RHOAI 3.2 following Red Hat's official documentation for proper application of the update.

Join the discussion

Release of RHOAI 2.25.1 provides these changes:

Join the discussion

Red Hat® AI Inference Server

Join the discussion

Ray is an AI compute engine. Prior to version 2.52.0, developers working with Ray as a development tool can be exploited via a critical RCE vulnerability exploitable via Firefox and Safari. This vulnerability is due to an insufficient guard against browser-based attacks, as the current defense uses the User-Agent header starting with the string "Mozilla" as a defense mechanism. This defense is insufficient as the fetch specification allows the User-Agent header to be modified. Combined with a DNS rebinding attack against the browser, and this vulnerability is exploitable against a developer running Ray who inadvertently visits a malicious website, or is served a malicious advertisement (malvertising). This issue has been patched in version 2.52.0.

Join the discussion
0

The buildah package provides a tool for facilitating building OCI container images. Among other things, buildah enables you to: Create a working container, either from scratch or using an image as a starting point; Create an image, either from a working container or using the instructions in a Dockerfile; Build both Docker and OCI images. Security Fix(es): * runc: container escape and denial of service due to arbitrary write gadgets and procfs write redirects (CVE-2025-52881) * golang: archive/tar: Unbounded allocation when parsing GNU sparse map (CVE-2025-58183) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Join the discussion

Showing 1 to 7 of 7 results

Filters:Tag: cve-2025-62593
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses