CyberRota Analysis
AI-GeneratedThe vulnerability in PHP affects the bccomp() function, where attacker-controlled inputs can result in an out-of-bounds write, potentially leading to stack and heap corruption. This could allow an attacker to execute arbitrary code or crash the application. Developers and system administrators using PHP versions 8.4.* prior to 8.4.24 and 8.5.* prior to 8.5.9 should prioritize applying the necessary updates to mitigate this risk.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Attacker-provided inputs to bccomp() could lead to an out-of-bounds write with stack and heap corruption in PHP versions from 8.4.* before 8.4.24 and from 8.5.* before 8.5.9.
Related CVEs
Other vulnerabilities affecting the same vendor(s)