Threats Tagged 'cve-2026-14355'
View all threats tagged with 'cve-2026-14355'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-14355'
Click on any threat for detailed analysis and mitigation recommendations
Multiple security vulnerabilities have been identified and fixed in PHP packages distributed by Red Hat for Red Hat Enterprise Linux 8 and 9. These include a memory corruption issue in the OpenSSL extension (CVE-2026-14355), an SQL injection vulnerability in the PostgreSQL extension due to improper backslash escaping (CVE-2026-17543), and a denial of service vulnerability caused by circular symbolic links in phar archives (CVE-2026-7260). The vulnerabilities affect PHP versions 7.4 and 8.0 as packaged in Red Hat Enterprise Linux. Red Hat has released updated packages with backported fixes for these issues. The overall security impact is rated low to important depending on the PHP version and specific vulnerability. Join the discussion | GCVE Database | 08/31/2026, 07:03:12 UTC Added: 08/31/2026, 15:42:48 UTC |
0 A security update for php8 addresses a buffer allocation flaw in the AES-WRAP-PAD algorithm implementation within the OpenSSL extension. This flaw is tracked as CVE-2026-14355 and is fixed in version 8.4.23. The vulnerability has been assigned a medium severity rating. Join the discussion | GCVE Database | 07/12/2026, 13:02:01 UTC Added: 09/17/2026, 01:59:10 UTC |
0 A memory corruption vulnerability exists in the PHP OpenSSL extension's AES-WRAP-PAD algorithm implementation in versions prior to 8.2.32, 8.3.32, 8.4.23, and 8.5.8. The issue is due to incorrect buffer allocation that does not consider RFC 5649 expansion, which can lead to heap corruption and application aborts. Red Hat has released updates for Red Hat Hardened Images RPMs to address this flaw. Join the discussion | GCVE Database | 07/01/2026, 10:21:27 UTC Added: 07/08/2026, 13:21:08 UTC |
Showing 1 to 3 of 3 results