PT-2026-105116 · Bitnami · Libphp

Publicado

2026-10-01

·

Atualizado

2026-10-01

Nenhuma

Não há classificações de severidade ou métricas disponíveis. Quando houver, atualizaremos as informações correspondentes na página.
php openssl matches wildcard name() in ext/openssl/xp ssl.c underflows the length argument passed to memchr() when a TLS server certificate presents a wildcard name whose literal characters are together longer than the hostname being verified. A malicious server presenting such a certificate makes the PHP client read up to SIZE MAX bytes past the end of a heap allocation. The path is reachable from any default client stream, because verify peer name is enabled by default.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

BIT-LIBPHP-2026-91767

Produtos afetados

Libphp