CVE-2025-30160

Redlib is an alternative private front-end to Reddit. A vulnerability has been identified in Redlib where an attacker can cause a denial-of-service (DOS) condition by submitting a specially crafted base2048-encoded DEFLATE decompression bomb to the restore_preferences form. This leads to excessive memory consumption and potential system instability, which can be exploited to disrupt Redlib instances. This vulnerability is fixed in 0.36.0.
CVSS

No CVSS.

Configurations

No configuration.

History

20 Mar 2025, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-20 19:15

Updated : 2025-03-20 19:15


NVD link : CVE-2025-30160

Mitre link : CVE-2025-30160

CVE.ORG link : CVE-2025-30160


JSON object : View

Products Affected

No product.

CWE
CWE-400

Uncontrolled Resource Consumption

CWE-502

Deserialization of Untrusted Data