Risk Scores
CVSS v4.0
9.300000190734863
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
EPSS Score
0.54%
67.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| SUSE Linux | Enterprise Server | 12 SP5 |
| SUSE Linux | SUSE Manager Server | 4.3 |
| SUSE Linux | Enterprise Module for Development Tools | 15 SP2 |
| SUSE Linux | SUSE Manager Server LTS | 4.3 |
| SUSE Linux | SUSE Manager Retail Branch Server | 4.3 |
| SUSE Linux | Enterprise Module for Package Hub | 15 SP5 |
| SUSE Linux | SUSE Manager Proxy | 4.3 |
| SUSE Linux | Enterprise Desktop | 15 SP6 |
| SUSE Linux | Enterprise Module for Dev Tools | 15 SP3 |
| Varnish Software | Varnish Cache | 5.x, 6.0LTS |
| SUSE Linux | Enterprise Server for SAP Applications | 15 SP6 |
| SUSE Linux | Enterprise High Performance Computing (HPC) | 15 |
| SUSE Linux | openSUSE Leap | 15.6 |
| SUSE Linux | Enterprise High Performance Computing | 15 SP3 |
| Fastly | H20 | 579ecfa |
| Wind River | Linux | LTS22 |
| Varnish Software | Varnish Enterprise | 6.0.x |
Timeline
- Aug 13, 2025 CVE Published
- Aug 13, 2025 PoC Published
- Aug 14, 2025 EPSS Score
- Aug 14, 2025 PoC Published
- Aug 14, 2025 PoC Published
- Aug 14, 2025 PoC Published
- Aug 15, 2025 PoC Published
- Aug 15, 2025 PoC Published
- Aug 16, 2025 PoC Published
- Aug 17, 2025 PoC Published
- Aug 18, 2025 PoC Published
- Aug 18, 2025 PoC Published
References
- https://github.com/varnish/hitch/issues/397 url
- https://galbarnahum.com/made-you-reset technical
- https://kb.cert.org/vuls/id/767506 url
- https://varnish-cache.org/security/VSV00017.html url
- https://www.fastlystatus.com/incident/377810 url
- https://github.com/h2o/h2o/commit/4729b661e3c6654198d2cc62997e1af58bef4b80 url
- https://support2.windriver.com/index.php?page=security-notices url
- https://www.suse.com/support/kb/doc/?id=000021980 url
- https://gitlab.isc.org/isc-projects/bind9/-/issues/5325 url
- https://github.com/h2o/h2o/security/advisories/GHSA-mrjm-qq9m-9mjq url
- https://github.com/envoyproxy/envoy/issues/40739 url
- https://github.com/Kong/kong/discussions/14731 url
- https://deepness-lab.org/publications/madeyoureset/ url
- https://www.imperva.com/blog/madeyoureset-turning-http-2-server-against-itself/ url
- https://www.kb.cert.org/vuls/id/767506 url
- http://www.openwall.com/lists/oss-security/2025/09/18/1 url
- http://www.openwall.com/lists/oss-security/2025/08/13/6 url