CVE-2025-14178

Updated: 2026-02-04 05:04:41.252146

Description:

In PHP versions:8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.29, 8.4.* before 8.4.16, 8.5.* before 8.5.1, a heap buffer overflow occurs in array_merge() when the total element count of packed arrays exceeds 32-bit limits or HT_MAX_SIZE, due to an integer overflow in the precomputation of element counts using zend_hash_num_elements(). This may lead to memory corruption or crashes and affect the integrity and availability of the target server.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x HIGH 8.2

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

Alpine Linux 3.22 php 7.3 8.2 HIGH Released CLSA-2026:1771245338 2026-02-16 14:41:30
Alpine Linux 3.22 php 7.4 8.2 HIGH Released CLSA-2026:1769188145 2026-01-23 21:45:44
Alpine Linux 3.22 php 8.1 8.2 HIGH Released CLSA-2026:1771348225 2026-02-18 17:42:42
Debian 10 php 8.0 8.2 HIGH Released CLSA-2026:1768587817 2026-01-16 18:29:27
Debian 10 php 5.6 8.2 HIGH Not Vulnerable 2026-01-16 11:14:21
Debian 10 php 7.3 8.2 HIGH Released CLSA-2026:1769025477 2026-01-22 04:29:11
Debian 10 php 8.2 8.2 HIGH Released CLSA-2026:1768511374 2026-01-15 22:31:43
Debian 10 php 8.1 8.2 HIGH Released CLSA-2026:1768510758 2026-01-15 22:31:45
Debian 10 php 7.0 8.2 HIGH Not Vulnerable 2026-01-16 11:13:57
Debian 10 php 7.1 8.2 HIGH Not Vulnerable 2026-01-16 11:13:57
Total: 140