CVE Vulnerabilities

CVE-2025-1861

This vulnerability is marked as RESERVED by NVD. This means that the CVE-ID is reserved for future use by the CVE Numbering Authority (CNA) or a security researcher, but the details of it are not yet publicly available yet.

This page will reflect the classification results once they are available through NVD.

Any vendor information available is shown as below.

Ubuntu

There is currently limit on the location value size caused by limited size of the location buffer to 1024. However as per https://www.rfc-editor.org/rfc/rfc9110#name-uri-references, the limit is recommended to 8000. The browser limit is usually around 2048 so 1024 is really too low and it might have a real impact in practice.

Affected Software List

Name Vendor Version
Php7.2 Ubuntu/upstream TBD
Php7.2 Ubuntu/esm-infra/bionic TBD
Php7.4 Ubuntu/focal TBD
Php7.4 Ubuntu/upstream TBD
Php8.1 Ubuntu/upstream TBD
Php8.1 Ubuntu/jammy TBD
Php8.3 Ubuntu/noble TBD
Php8.3 Ubuntu/oracular TBD
Php8.3 Ubuntu/upstream TBD
Php8.4 Ubuntu/upstream TBD
Php8.4 Ubuntu/devel TBD
Php5 Ubuntu/esm-infra-legacy/trusty TBD
Php5 Ubuntu/upstream TBD
Php7.0 Ubuntu/upstream TBD
Php7.0 Ubuntu/esm-infra/xenial TBD