VDB
BDU%3A2025-15590
BDU%3A2025-15590
PUBLISHED
CVSS 7.800000190734863 HIGH
Уязвимость HTTP-клиента aiohttp, связанная с непоследовательной интерпретацией HTTP-запросов, позволяющая нарушителю осуществлять атаки с подменой HTTP-запросов
Risk Scores
CVSS 2.0
7.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| ООО «Ред Софт», Novell Inc., Red Hat Inc., Сообщество свободного программного обеспечения | РЕД ОС (запись в едином реестре российских программ №3751), SUSE Linux Enterprise High Performance Computing, Suse Linux Enterprise Server, SUSE Linux Enterprise Server for SAP Applications, SUSE Manager Proxy, SUSE Manager Server, SUSE Manager Retail Branch Server, SUSE Linux Enterprise Module for Public Cloud, SUSE Enterprise Storage, Suse Linux Enterprise Desktop, OpenSUSE Leap, Red Hat OpenShift Lightspeed, SUSE Linux Enterprise Module for Python 3, OpenShift AI, aiohttp |
Timeline
- Dec 11, 2025 CVE Published
References
- https://github.com/aio-libs/aiohttp/commit/e8d774f635dc6d1cd3174d0e38891da5de0e2b6a advisory
- https://access.redhat.com/security/cve/cve-2025-53643 advisory
- https://www.suse.com/ko-kr/security/cve/CVE-2025-53643.html url
- https://redos.red-soft.ru/support/secure/uyazvimosti/uyazvimost-chromium-cve-2025-53643/?sphrase_id=1370882 advisory