VDB
BDU%3A2025-10413
BDU%3A2025-10413
PUBLISHED
CVSS 5.400000095367432 MEDIUM
Уязвимость функции PQescapeIdentifier() интерпретатора языка программирования PHP, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
5.400000095367432
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical Ltd., Novell Inc., Сообщество свободного программного обеспечения, ООО «Ред Софт», ООО «РусБИТех-Астра», АО «ИВК», PHP Group | Ubuntu, openSUSE Tumbleweed, Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), Astra Linux Special Edition (запись в едином реестре российских программ №369), SUSE Linux Enterprise Server for SAP Applications, SUSE Manager Server, АЛЬТ СП 10, SUSE Linux Enterprise High Performance Computing, Suse Linux Enterprise Server, SUSE Linux Enterprise Module for Package Hub, OpenSUSE Leap, SUSE Linux Enterprise Module for Web Scripting, SUSE Linux Enterprise Module for Legacy, PHP |
Timeline
- Aug 29, 2025 CVE Published
- Feb 16, 2026 CVE Updated
References
- https://feedly.com/cve/CVE-2025-1735 url
- https://php.watch/versions/8.1/releases/8.1.33 url
- https://php.watch/versions/8.2/releases/8.2.29 url
- https://php.watch/versions/8.3/releases/8.3.23 url
- https://php.watch/versions/8.4/releases/8.4.10 url
- https://github.com/php/php-src/security/advisories/GHSA-hrwm-9436-5mv3 url
- https://www.suse.com/security/cve/CVE-2025-1735.html url
- https://ubuntu.com/security/CVE-2025-1735 url
- https://security-tracker.debian.org/tracker/CVE-2025-1735 url
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ url
- https://altsp.su/obnovleniya-bezopasnosti/ url
- https://wiki.astralinux.ru/astra-linux-se18-bulletin-2025-1113SE18 url
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2025-1202SE17 url
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2025-1216SE197 url
- https://wiki.astralinux.ru/astra-linux-se38-bulletin-2026-0126SE38 url
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2025-1216SE47 advisory