[CLSA-2026:1791253410] alt-php74: Fix of 5 CVEs
Type:
security
Severity:
Important
Release date:
2026-10-06 02:23:45 UTC
Description:
- CVE-2026-93682: the http:// wrapper read past an empty Location header when building a relative redirect target; use location_len instead of strlen() and of reading the second byte - CVE-2026-91768: FastCGI listen.allowed_clients compared only the first 96 bits of IPv6 addresses; compare the full 128-bit address
Updated packages:
  • alt-php74-7.4.33-77.el10.x86_64.rpm
    sha:15c4b207b58f77d5d19e05a14aaef2d33585be4a3553f6ea86784a51eb0ad4ef
  • alt-php74-bcmath-7.4.33-77.el10.x86_64.rpm
    sha:e6c5ee92747490bd6c8dcce1d5bb295736954ec02a6833a692e0cec9a526315d
  • alt-php74-cli-7.4.33-77.el10.x86_64.rpm
    sha:bbaedcfdc223d903cf1daf39cb1386f67fd40ceebbadb5c652849a5cae357d30
  • alt-php74-common-7.4.33-77.el10.x86_64.rpm
    sha:f9fafce7716481673401ed4941b844e32ab29e20b279c1876a4eb3f3a502e7ba
  • alt-php74-dba-7.4.33-77.el10.x86_64.rpm
    sha:7f427212c0d6ea4d1c61feb8d4c485cd489f52ecc510fe2571c703fc9517bee6
  • alt-php74-devel-7.4.33-77.el10.x86_64.rpm
    sha:9eda93485e23d7bbba2f2c52c779f6e4907ba77d393e4ef69e96cf746c0d3e1f
  • alt-php74-enchant-7.4.33-77.el10.x86_64.rpm
    sha:8a1eab727a63844b504a5ea62243694f6335ff2a1f6c92b9b9ca557ef1dec5ff
  • alt-php74-firebird-7.4.33-77.el10.x86_64.rpm
    sha:31232440a4a4fbca09e095c9fb5dbf0ba0ce0626507e649153969d126af6c06d
  • alt-php74-gd-7.4.33-77.el10.x86_64.rpm
    sha:f08c9f366f87152e726467956df3d1d1d8065a6a96a8ed91a59b758148b8a7de
  • alt-php74-imap-7.4.33-77.el10.x86_64.rpm
    sha:fa6bee0fa288575129101359d5d843cbd908ed3305f956fe0bdc04bfe26ccdc1
  • alt-php74-intl-7.4.33-77.el10.x86_64.rpm
    sha:c6ae79206a96b2d19be7159557177d0279696c0a2ae231256977c6b0db4eb245
  • alt-php74-ldap-7.4.33-77.el10.x86_64.rpm
    sha:18dd03a751fe17a4ce130fe32383d2797d537305fe25740800314822e21ace80
  • alt-php74-mbstring-7.4.33-77.el10.x86_64.rpm
    sha:cd7234f4a730bd8e9a0220673bf58dfd4d70b3f338c115edfa1ae1f5b7a1e465
  • alt-php74-mysqlnd-7.4.33-77.el10.x86_64.rpm
    sha:318cf77dae7b1ae66d55ad37e665f505edd42dc436eba188279e07d483c77af7
  • alt-php74-odbc-7.4.33-77.el10.x86_64.rpm
    sha:4faec69349f2b1bfb90b71edd8c344db14629a7a9f27091f22d03a2ba3f6050e
  • alt-php74-opcache-7.4.33-77.el10.x86_64.rpm
    sha:a2935bad9c35a90c64bcf42f34024425cd62ace53f73b8968d6d30523b3c0373
  • alt-php74-pdo-7.4.33-77.el10.x86_64.rpm
    sha:ecd54a42c4c14a519257390012ee5b65315558dd5c90912422f3a6a33715d595
  • alt-php74-pgsql-7.4.33-77.el10.x86_64.rpm
    sha:532b5c931189c88bb4cbe6918ecf90e413f8f7b49c2c274eaeb0e26d4e883d66
  • alt-php74-php-fpm-7.4.33-77.el10.x86_64.rpm
    sha:a1bfe55adf6171954212e8ffec1b73725a7999e2301ce057d793a02f1a7a14f3
  • alt-php74-process-7.4.33-77.el10.x86_64.rpm
    sha:beef46240ec03071a307c2354c6f8f64c95c676717d7156a660457678526ecad
  • alt-php74-pspell-7.4.33-77.el10.x86_64.rpm
    sha:2bc4ba7f830062738322fd4bd48290cecc3b4784d3d70a3b4df54341ef042233
  • alt-php74-snmp-7.4.33-77.el10.x86_64.rpm
    sha:740a32eab96e1f5388ff1698b66b274f309593ff8eeeb4e874f0db1a577a95d6
  • alt-php74-soap-7.4.33-77.el10.x86_64.rpm
    sha:b9bcd2de45100a4be212835de59515b97dfd1d4fb6824005e792ecf04c1afd91
  • alt-php74-sodium-7.4.33-77.el10.x86_64.rpm
    sha:8d48edc7f5854e8cdb8e64900e1162e373319c9994de6aca8c8e26ce9df55b0d
  • alt-php74-tidy-7.4.33-77.el10.x86_64.rpm
    sha:e98c99eb2a08f025b773eae760e11abb9a0119bcba923ac15c831e7f16293994
  • alt-php74-xml-7.4.33-77.el10.x86_64.rpm
    sha:17725268a862ef22e61910604ae49223e9cf4ca53833ef2aec11f7254b0adc7e
  • alt-php74-xmlrpc-7.4.33-77.el10.x86_64.rpm
    sha:b1d08f6c180c064ef549caf7541233011f7d8be7ee4f9f343e3c74a29ee40eff
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.