Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-7260

Опубликовано: 30 июл. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 5.5

Описание

Circular symbolic links in phar archives could lead to unbounded recursion, exhausting the C stack and crashing the PHP process, in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9.

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

needs-triage

jammy

DNE

noble

DNE

resolute

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/xenial

released

7.0.33-0ubuntu0.16.04.16+esm20
jammy

DNE

noble

DNE

resolute

DNE

upstream

needed

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/bionic

needs-triage

jammy

DNE

noble

DNE

resolute

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/focal

needs-triage

jammy

DNE

noble

DNE

resolute

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

jammy

released

8.1.2-1ubuntu2.26
noble

DNE

resolute

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

jammy

DNE

noble

released

8.3.6-0ubuntu0.24.04.11
resolute

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

not-affected

8.5.9-0ubuntu1
jammy

DNE

noble

DNE

resolute

released

8.5.4-0ubuntu1.3
upstream

released

8.5.9

Показывать по

EPSS

Процентиль: 3%
0.00148
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
redhat
2 месяца назад

Circular symbolic links in phar archives could lead to unbounded recursion, exhausting the C stack and crashing the PHP process, in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9.

CVSS3: 5.5
nvd
2 месяца назад

Circular symbolic links in phar archives could lead to unbounded recursion, exhausting the C stack and crashing the PHP process, in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9.

CVSS3: 5.5
msrc
около 2 месяцев назад

Stack overflow in phar with circular symlinks

CVSS3: 5.5
debian
2 месяца назад

Circular symbolic links in phar archives could lead to unbounded recur ...

suse-cvrf
23 дня назад

Security update for php7

EPSS

Процентиль: 3%
0.00148
Низкий

5.5 Medium

CVSS3