Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2025-4565

Any project that uses Protobuf Pure-Python backend to parse untrusted Protocol Buffers data containing an arbitrary number of recursive groups, recursive messages or a series of SGROUP tags can be corrupted by exceeding the Python recursion limit. This can result in a Denial of service by crashing the application with a RecursionError. We recommend upgrading to version =>6.31.1 or beyond commit 17838beda2943d08b8a9d4df5b68f5f04f26d901
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 5.0%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2025-4565
  • Google » Protobuf » Version: 4.25.8
    cpe:2.3:a:google:protobuf:4.25.8
  • Google » Protobuf » Version: 5.29.5
    cpe:2.3:a:google:protobuf:5.29.5
  • Google » Protobuf » Version: 6.31.1
    cpe:2.3:a:google:protobuf:6.31.1


Contact Us

Shodan ® - All rights reserved