AZL-105639

See a problem?
Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-105639.json
JSON Data
https://api.osv.dev/v1/vulns/AZL-105639
Upstream
Published
2026-09-30T05:16:45Z
Modified
2026-10-04T05:34:07Z
Summary
CVE-2026-103111 affecting package php 8.3.33-1
Details

PCRE2 before 10.49, when there is an attacker-controlled regular expression and certain JIT API usage, allows an out-of-bounds write with arbitrary data.

References

Affected packages

Azure Linux:3 / php

Package

Name
php
Purl
pkg:rpm/azure-linux/php

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Last Affected
8.3.33-1

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-105639.json"