vulnerability

Amazon Linux 2023: CVE-2025-40914: Important priority package update for perl-CryptX

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Jun 11, 2025
Added
Jun 24, 2025
Modified
Jul 2, 2025

Description

Perl CryptX before version 0.087 contains a dependency that may be susceptible to an integer overflow.

CryptX embeds a version of the libtommath library that is susceptible to an integer overflow associated with CVE-2023-36328.

Solutions

amazon-linux-2023-upgrade-perl-cryptxamazon-linux-2023-upgrade-perl-cryptx-debuginfoamazon-linux-2023-upgrade-perl-cryptx-debugsourceamazon-linux-2023-upgrade-perl-cryptx-tests
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.