CVE-2026-92842 | PHP up to 8.2.33/8.3.34/8.4.25/8.5.10 Stream Filters pestrdup line-break-chars out-of-bounds
A vulnerability, which was classified as problematic, has been found in PHP up to 8.2.33/8.3.34/8.4.25/8.5.10. Impacted is the function pestrdup of the component Stream Filters. Performing a manipulation of the argument line-break-chars results in out-of-bounds read.
This vulnerability is identified as CVE-2026-92842. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More