{"id":"CVE-2025-55181","details":"Sending an HTTP request/response body with greater than 2^31 bytes triggers an infinite loop in proxygen::coro::HTTPQuicCoroSession which blocks the backing event loop and unconditionally appends data to a std::vector per-loop iteration. This issue leads to unbounded memory growth and eventually causes the process to run out of memory.","modified":"2026-08-07T11:48:50.357413123Z","published":"2025-12-02T22:16:08.380Z","database_specific":{},"references":[{"type":"ADVISORY","url":"https://www.facebook.com/security/advisories/cve-2025-55181"},{"type":"FIX","url":"https://github.com/facebook/proxygen/commit/17689399ef99b7c3d3a8b2b768b1dba1a4b72f8f"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/facebook/proxygen","events":[{"introduced":"bf9eb7570870c3814641798c3579d1fc8bf70f34"},{"last_affected":"9587042e43a9d11a7335828ae738c5b6c2487daf"},{"fixed":"17689399ef99b7c3d3a8b2b768b1dba1a4b72f8f"}],"database_specific":{"source":["CPE_RANGE","REFERENCES"],"cpe":"cpe:2.3:a:facebook:proxygen:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"2025.08.25.00"},{"last_affected":"2025.12.01.00"}]}}],"versions":["v2025.12.01.00","v2025.11.24.00","v2025.11.17.00","v2025.11.10.00","v2025.11.03.00","v2025.10.27.00","v2025.10.20.00","v2025.10.13.00","v2025.10.06.00","v2025.09.29.00","v2025.09.22.00","v2025.09.15.00","v2025.09.08.00","v2025.09.01.00","v2025.08.25.00"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-55181.json"}}],"schema_version":"1.8.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"}]}