{"id":"CVE-2025-1218","published":"2026-09-25T21:17:20.993","lastModified":"2026-09-29T21:27:41.130","description":"The mysqlnd wire protocol parser reads fields out of server packets before checking that the packet still holds enough bytes for them. A malicious or compromised MySQL server can send a truncated packet and make the client read past the end of the packet buffer, which is undefined behaviour and can crash the process.","cvssScore":3.4,"cvssSeverity":"LOW","cvssVector":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:N","cwes":["CWE-122"],"vendors":[],"products":[],"references":[{"url":"https://github.com/php/php-src/security/advisories/GHSA-r6x9-5r99-36j7","tags":[]}],"exploitRefs":[{"url":"https://github.com/php/php-src/security/advisories/GHSA-r6x9-5r99-36j7","tags":[]}],"hasPoc":true,"ai":null}