[CLSA-2026:1791221291] alt-php73: Fix of 5 CVEs
Type:
security
Severity:
Important
Release date:
2026-10-05 17:28:28 UTC
Description:
- CVE-2026-93682: the http:// wrapper read past the one-byte allocation of an empty Location header when building a relative redirect target; check location_len instead of strlen() and of reading the second byte - CVE-2026-91768: FastCGI listen.allowed_clients compared only the first 96 bits of IPv6 addresses; compare the full 128-bit address
Updated packages:
  • alt-php73-7.3.33-79.el7.x86_64.rpm
    sha:331630bb408155522875c4b5a959fec4deda63ceebe695072fa3d906800707a5
  • alt-php73-bcmath-7.3.33-79.el7.x86_64.rpm
    sha:0e2ef17b6592af644175381b64a01ce47c1a0be126af37d73ff0622d80cc50b8
  • alt-php73-cli-7.3.33-79.el7.x86_64.rpm
    sha:026a92b24491fae7c7cdd6b047f467832e2deda843623901a06f5c40f7d19767
  • alt-php73-common-7.3.33-79.el7.x86_64.rpm
    sha:960c18e2d8462f8516f61922c5443acfd5fb29b01143ec5898ab2c962750240f
  • alt-php73-dba-7.3.33-79.el7.x86_64.rpm
    sha:ce3adf76812688debb4ed712b5be90ff0236822f2ceb146ca6b527ebb86b632b
  • alt-php73-devel-7.3.33-79.el7.x86_64.rpm
    sha:2451a426b90c48fa38c0d171089d3979968f733dc87decb9f75e343041815289
  • alt-php73-enchant-7.3.33-79.el7.x86_64.rpm
    sha:c3b66c1b1dad97f268815312a6feb50905a17bce8c6eff81338f98e28a8c19a4
  • alt-php73-firebird-7.3.33-79.el7.x86_64.rpm
    sha:95a82ead6926f0b57a8164b0c618928d10489b651956e8decb51a9d68df67518
  • alt-php73-gd-7.3.33-79.el7.x86_64.rpm
    sha:be7a836cd47174bab3c4cd30a413cd493cf5933e1d03aea117f7d5a9a1abbbba
  • alt-php73-imap-7.3.33-79.el7.x86_64.rpm
    sha:e909dfa1850f37a5baa6d5d8866a38431d5d48e6e1b732b0729a26dd7939ac9b
  • alt-php73-intl-7.3.33-79.el7.x86_64.rpm
    sha:21ea5108eb1c6e2a0a096459f2f2e66a9b61c09467aaabcafb8c5970418abde4
  • alt-php73-ldap-7.3.33-79.el7.x86_64.rpm
    sha:77c04a0abc1bff95663cf4e362daefaee10d8831a97c63acb4a2d2015e930b2e
  • alt-php73-mbstring-7.3.33-79.el7.x86_64.rpm
    sha:4d65f8bdf4a7aaea0a4d1c4343f46a0d8d65bc0059bbb96b6f371f554488da72
  • alt-php73-mysqlnd-7.3.33-79.el7.x86_64.rpm
    sha:778ec2f199336cb0ef1fcdc02aa18bc9c1e5250beef3af1ed2095388a0d18a16
  • alt-php73-odbc-7.3.33-79.el7.x86_64.rpm
    sha:0b7b6ac97eb1799cb28e08b4604454a88692c98a92457e5b41e7f7756eb3de28
  • alt-php73-opcache-7.3.33-79.el7.x86_64.rpm
    sha:984d7685e06bab4c37ad104f24dabdd9bf3c374ade0a0449d2a41885cf5bc12f
  • alt-php73-pdo-7.3.33-79.el7.x86_64.rpm
    sha:ba5718ce43a967a457ff27eb50c01043c20b4360e0cdf7bb57c833f92e6e6648
  • alt-php73-pgsql-7.3.33-79.el7.x86_64.rpm
    sha:1371a32c16cd852b5ba6ea4bf2ff40559d67b983bf2918bf8c75e2b32a60db7e
  • alt-php73-php-fpm-7.3.33-79.el7.x86_64.rpm
    sha:702a52c22fb60c4478458f4931c5baaa42bafd3fe77a12960a48aaa26073f076
  • alt-php73-process-7.3.33-79.el7.x86_64.rpm
    sha:04ef7be7e3ad7324d6c833671dce8348b2ebe47def975f1ecf06b099cad0002c
  • alt-php73-pspell-7.3.33-79.el7.x86_64.rpm
    sha:f93368f9a38c71205ddc5c65d8d43f2532fc28adeb34c3f0871aadb7f0c2c19b
  • alt-php73-recode-7.3.33-79.el7.x86_64.rpm
    sha:e19784bd4ac0e65b11b5b334b56cd6d86d93f6e7fe40490f5e0ce634137fa1cf
  • alt-php73-snmp-7.3.33-79.el7.x86_64.rpm
    sha:68c18e5a86225b9f3aceba7924a08663b863c7e2a0bfced516d9c040c9c40864
  • alt-php73-soap-7.3.33-79.el7.x86_64.rpm
    sha:baa84c5ad89a41b197dc3de6bfe861a10a9ac6c95e7fbbc1be181242a28351d5
  • alt-php73-sodium-7.3.33-79.el7.x86_64.rpm
    sha:323bb2796f7b99f0652b18a554b1bbb31d840a09acfa2c626b20ee4da3ea6777
  • alt-php73-tidy-7.3.33-79.el7.x86_64.rpm
    sha:37a7cef73b343f5b5244ac11b9fe0bfcca81ec9583554b4ae57a6aa7b2c3bc0b
  • alt-php73-xml-7.3.33-79.el7.x86_64.rpm
    sha:d418385f7923db957d9f6701762f812d8a76d0c52a159122f25d2edac4e923fc
  • alt-php73-xmlrpc-7.3.33-79.el7.x86_64.rpm
    sha:6a3a470a7d6e8b0efd87da2a58f91a2f9ff229bc6f85a0ac62f6e57d502b9dd3
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.