VDB
CVE-2019-25219
CVE-2019-25219
PUBLISHED
CVSS 7.5 HIGH
Asio C++ Library before 1.13.0 lacks a fallback error code in the case of SSL_ERROR_SYSCALL with no associated error information from the SSL library being used.
EPSS 0.49% · 39.9th percentile
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.49%
39.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:16.04:LTS | asio | 0, 1:1.10.6-1, 1:1.10.6-2 |
| Ubuntu:18.04:LTS | asio | 1:1.10.8-1, 0 |
| Ubuntu:20.04:LTS | asio | *, 0 |
Timeline
- Oct 29, 2024 CVE Published
- Oct 30, 2024 EPSS Score
- Nov 17, 2024 EPSS Score
- Dec 7, 2024 EPSS Score
- Dec 25, 2024 EPSS Score
- Jan 12, 2025 EPSS Score
- Jan 31, 2025 EPSS Score
- Feb 18, 2025 EPSS Score
- Mar 8, 2025 EPSS Score
- Mar 27, 2025 EPSS Score
- Apr 14, 2025 EPSS Score
- May 2, 2025 EPSS Score
References
- https://ubuntu.com/security/CVE-2019-25219 third-party-advisory
- https://www.cve.org/CVERecord?id=CVE-2019-25219 third-party-advisory
- https://github.com/chriskohlhoff/asio/commit/93337cba7b013150f5aa6194393e1d94be2853ec third-party-advisory
- https://github.com/chriskohlhoff/asio/compare/asio-1-12-2...asio-1-13-0 third-party-advisory
- https://think-async.com/Asio/ third-party-advisory