CVE Vulnerabilities

CVE-2025-14180

NULL Pointer Dereference

Published: Dec 27, 2025 | Modified: Jan 09, 2026
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
7.5 IMPORTANT
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

In PHP versions 8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.29, 8.4.* before 8.4.16, 8.5.* before 8.5.1 when using the PDO PostgreSQL driver with PDO::ATTR_EMULATE_PREPARES enabled, an invalid character sequence (such as x99) in a prepared statement parameter may cause the quoting function PQescapeStringConn to return NULL, leading to a null pointer dereference in pdo_parse_params() function. This may lead to crashes (segmentation fault) and affect the availability of the target server.

Weakness

The product dereferences a pointer that it expects to be valid but is NULL.

Affected Software

NameVendorStart VersionEnd Version
PhpPhp8.1.0 (including)8.1.34 (excluding)
PhpPhp8.2.0 (including)8.2.30 (excluding)
PhpPhp8.3.0 (including)8.3.29 (excluding)
PhpPhp8.4.0 (including)8.4.16 (excluding)
PhpPhp8.5.0 (including)8.5.1 (excluding)
Red Hat Enterprise Linux 10.0 Extended Update SupportRedHatphp-0:8.3.19-1.el10_0.1*
Red Hat Enterprise Linux 8RedHatphp:8.2-8100020260106091451.f7998665*
Red Hat Enterprise Linux 9RedHatphp:8.2-9070020260107073439.9*
Red Hat Enterprise Linux 9RedHatphp:8.3-9070020260108073701.9*
Red Hat Enterprise Linux 9.4 Extended Update SupportRedHatphp:8.2-9040020260116191026.9*
Red Hat Enterprise Linux 9.6 Extended Update SupportRedHatphp:8.2-9060020260116185805.9*
Red Hat Enterprise Linux 9.6 Extended Update SupportRedHatphp:8.3-9060020260116180534.9*
Php8.1Ubuntujammy*
Php8.3Ubuntunoble*
Php8.4Ubuntudevel*
Php8.4Ubuntuplucky*
Php8.4Ubuntuquesting*

Potential Mitigations

References