CVE-2025-12183
Low
Low
Medium
High
Critical
CVSS Score
Vulnerability Description
Out-of-bounds memory operations in org.lz4:lz4-java 1.8.0 and earlier allow remote attackers to cause denial of service and read adjacent memory via untrusted compressed input.
Oracle
CPUAPR2026
Oracle Critical Patch Update Advisory - April 2026
Severity
Critical
Released
Apr 21, 2026
Restart Required
Security Update
Oracle
CPUJAN2026
Oracle Critical Patch Update Advisory - January 2026
Severity
Critical
Released
Jan 20, 2026
Restart Required
Security Update
References & Resources
Severity Details
out of 10.0
Low
Weakness Type (CWE)
CWE-125
Top 25 #11
Out-of-bounds Read
- Description
- The product reads data past the end, or before the beginning, of the intended buffer.
- Typical Severity
- High
- Abstraction Level
- Base
Key Information
- Published Date
- November 28, 2025
