Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 594
Alerts This Week
Warning Icon 1 594

Mageia 10 PHP 8.4 Critical Memory Corruption CVE-2026-14355

mageia
Calendar Grey July 20, 2026
Scroller Mageia
Learn about the Mageia security update for PHP 8.4 addressing a critical memory corruption issue affecting version 8.4.23.
Security update

Summary

Description: The updated php8.4 and php8.5 packages fix several security issues, e.g. Memory corruption (zend_mm_heap corrupted) in openssl_encrypt with AES-WRAP-PAD. (CVE-2026-14355)

References

- https://bugs.mageia.org/show_bug.cgi?id=35809

- https://www.php.net/ChangeLog-8.php#8.4.23

- https://www.php.net/ChangeLog-8.php#8.5.8

- https://www.cve.org/CVERecord?id=CVE-2026-14355

Resolution

SRPMS

- 10/core/php8.4-8.4.23-1.mga10

- 10/core/php8.5-8.5.8-1.mga10

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 20 Jul 2026 
URL: https://advisories.mageia.org/MGASA-2026-0285.html
Type: security
CVE: CVE-2026-14355

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.