CVE-2025-14177

Public on 2025-12-21
Modified on 2025-12-21
Description
NOTE: https://github.com/php/php-src/security/advisories/GHSA-3237-qqm7-mfv7
NOTE: https://github.com/php/php-src/commit/c5f28c7cf0a052f48e47877c7aa5c5bcc54f1cfc
DEBIANBUG: [1123574]
Severity
Low severity
Low
See what this means
CVSS v3 Base Score
3.7
See breakdown

Affected Packages

Platform Package Release Date Advisory Status
Amazon Linux 2 - Php8.1 Extra php Pending Fix
Amazon Linux 2 - Php8.2 Extra php Pending Fix
Amazon Linux 2 - Core php Not Affected
Amazon Linux 2023 php8.1 2026-01-07 ALAS2023-2025-1355 Fixed
Amazon Linux 2023 php8.2 2026-01-07 ALAS2023-2025-1354 Fixed
Amazon Linux 2023 php8.3 2026-01-07 ALAS2023-2025-1353 Fixed
Amazon Linux 2023 php8.4 2026-01-07 ALAS2023-2025-1352 Fixed

CVSS Scores

Score Type Score Vector
Amazon Linux CVSSv3 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N