CVE-2025-9624
Publication date 25 November 2025
Last updated 17 December 2025
Ubuntu priority
Description
A vulnerability in OpenSearch allows attackers to cause Denial of Service (DoS) by submitting complex query_string inputs. This issue affects all OpenSearch versions between 3.0.0 and < 3.3.0 and OpenSearch < 2.19.4.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| opensearch | 25.10 questing | Not in release |
| 24.04 LTS noble |
Needs evaluation
|
|
| 22.04 LTS jammy | Not in release |