[CLSA-2025:1739821812] php: Fix of 3 CVEs
Type:
security
Severity:
Moderate
Release date:
2025-02-17 19:50:20 UTC
Description:
- CVE-2024-8925: fix erroneous parsing of multipart form data contained in an HTTP POST request - CVE-2024-9026: fix log tampering in PHP-FPM - CVE-2024-5458: fix early-out for ipv6 hostname validation, ensure full check is performed
Updated packages:
  • php-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:f17695621cf743d5d21ce7c6eee6d5e5ed1be468db17ed0a7241d527ef9b641e
  • php-bcmath-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:d3315c336085aaa2533345e5b88d5390cb3e8b3176ed8fb8c43f8955df138605
  • php-cli-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:6a3c24bbae0f7609755d29ce93caafc618eaa2727580006ab92b0f2dcedde643
  • php-common-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:29edb71c04650bbeb0bbe1f482135f5b52c0e7820fd15f724df31f40fe61857c
  • php-dba-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:0f4e6531ab463f60a49ef6beb659479323dc9b6dac78385228bd2b4a1666bf66
  • php-dbg-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:b188d3f9baf2089fa10d1d588065c8eb24fc7cf7d80c8de6d96a743834acc6d5
  • php-devel-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:ae9ba1aad88f005e93126c3901e31dc379102516240e042096dd6ac8fe861c41
  • php-embedded-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:6764c6b379eaa4cc5864484f95a35132cdd64e6a91db295f51c3488551e82717
  • php-enchant-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:99bc79cc17fbb36c6e4d9c6d547ece5303b13f36fd40cd6ea5c024ef24df2095
  • php-ffi-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:6fcceccf47985f1474027f19d9586b6abd2a08350f271dba9472a76de51a7806
  • php-fpm-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:678a5ed154f6c6de4896b0ec71c141f17801a3e7f69c94f06a8dd93dc3c31a78
  • php-gd-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:1ee943b202e68e376c9e62588c24ed3f58b7d1d1caae7141bc481c561229b1cb
  • php-gmp-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:1e6b3ebd46f101ef2eb5adaa88365fe02aced25b54177d7a519d7e5e355f711c
  • php-intl-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:0674cb3cb6b854dd3e3d2b89c52a17322c23ad3fe7a1c89932dab1a29e3b6db5
  • php-ldap-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:51f7cafd41c4d715fcec8261b0feafb4d4984cfc2bcdb74b0e53c51b44bfd1b9
  • php-mbstring-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:071c1012e33c641efebcb9d9cbf8cee36607c5839995ac6bd1f058f35a8c13c5
  • php-mysqlnd-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:d5b6fe1c574a0e96436a4fb4bca87ab6023a2eb333522eeb314d77f731b7f400
  • php-odbc-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:d8d9b93bb815376f6441762e3f0383ed02c4184624167da9c96ecb5d6106a0d5
  • php-opcache-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:3f3a64df170696f65c0c588affc9f3554c4eee979c9205fc6e1b66e115480d09
  • php-pdo-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:a516918f62365dad370143d405ac34e4b4b8e9629ffced2320a09ce1afd59442
  • php-pgsql-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:fe976736935fa10431c153a90db728fdbfa75b4afe1ab4dde36aca3a9f47b424
  • php-process-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:cd7d24d9f1bad2fb7a7d927279da33b540dd52011b2198184ad5b065ac5c6e4a
  • php-snmp-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:699d1ebf065431095a71ab95ea0fcbbbc678ba792f25f7d1d5ed79d703d10e35
  • php-soap-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:fc94c1d6995a1729625777525deabf98474cb393c119f2787b32f5087ad1123b
  • php-xml-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm
    sha:ba418b32038c3ae4eb8166a1130cbdf5d24191b9a09965e05ea581e36dd371a5
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.