CVE Vulnerabilities

CVE-2025-12816

Interpretation Conflict

Published: Nov 25, 2025 | Modified: Nov 25, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
8.7 IMPORTANT
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:N
Ubuntu
MEDIUM

An interpretation-conflict (CWE-436) vulnerability in node-forge versions 1.3.1 and earlier enables unauthenticated attackers to craft ASN.1 structures to desynchronize schema validations, yielding a semantic divergence that may bypass downstream cryptographic verifications and security decisions.

Weakness

Product A handles inputs or steps differently than Product B, which causes A to perform incorrect actions based on its perception of B’s state.

Affected Software

Name Vendor Start Version End Version
Red Hat OpenShift Service Mesh 2.6 RedHat openshift-service-mesh/kiali-ossmc-rhel8:sha256:ab2b4a1a2d1e5230e3c092af3827a21c0838702ae227afd786925d1704002afd *
Red Hat OpenShift Service Mesh 2.6 RedHat openshift-service-mesh/kiali-rhel8:sha256:accf357afa34ff4573ec5a538edfdd37b35f3aeabf786bd6a469f1f457498654 *
Red Hat OpenShift Service Mesh 3.0 RedHat openshift-service-mesh/kiali-ossmc-rhel9:sha256:e00f3b28e62c2ac90d836d7673183b1b391b76ce1b272861e49571f345cfa6a4 *
Red Hat OpenShift Service Mesh 3.0 RedHat openshift-service-mesh/kiali-rhel9:sha256:c012e5fdf21c90d8d504164ddec9b294c5c347df078049fcd4e20a9ebe2f76cc *
Red Hat OpenShift Service Mesh 3.1 RedHat openshift-service-mesh/kiali-ossmc-rhel9:sha256:928ed23934eae4e9c16ac23eaa828cc09f2d0ae539f330454ad6222e8cec3250 *
Red Hat OpenShift Service Mesh 3.1 RedHat openshift-service-mesh/kiali-rhel9:sha256:85b7d05d935a5d86fc0695ef7ab7edefd27c2674bd35a4e5997b6ac7bbbaa2a8 *
Red Hat OpenShift Service Mesh 3.2 RedHat openshift-service-mesh/kiali-ossmc-rhel9:sha256:8075a2d2d3d00efdce0280e00fa2724d339703a236ef7c74e546c4f0ce023d9b *
Red Hat OpenShift Service Mesh 3.2 RedHat openshift-service-mesh/kiali-rhel9:sha256:04c798a54632613681f4ff9d07b88b79722dba1cdba1a6e8166ec94a252a81e6 *

References