[CLSA-2026:1776958404] php: Fix of 5 CVEs
Type:
security
Severity:
Critical
Release date:
2026-04-25 08:46:43 UTC
Description:
- CVE-2019-9023: mbstring oniguruma: fix heap overflow in utf32be_mbc_to_code and related mbc_to_code encoders (bug #77418); completes CVE-2019-9023 coverage alongside existing php-5.3.29-bug77370_77371_77381_77382_77385_77394.patch - CVE-2019-11034: exif: fix heap-buffer-overflow in php_ifd_get32s (bug #77753) - CVE-2019-11035: exif: fix heap-buffer-overflow in exif_iif_add_value (bug #77831) - CVE-2019-11036: exif: fix heap-buffer-overflow via exif_process_IFD_TAG (bug #77950) - CVE-2019-9641: exif: fix uninitialized read in exif_process_IFD_in_TIFF via 32-bit integer overflow (bug #77509)
Updated packages:
  • php-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:8f4af4f50fa768215753fd7e603c6195495fca60f30f8426937414b0bc2fe124
  • php-bcmath-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:00f8808293cc89975130de60af57af0ef0acd9b9d20801aef5e5df185ca44770
  • php-cli-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:247ed24c5f66673df89d89792ed515c2802c672d2df40d9f17111b751bfe28a6
  • php-common-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:58e8c698a1dd532e24b9a240c793ac678ba7394f1a23659df4b5b090b7a224f7
  • php-dba-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:18fa1af234d628fa8eed57388c378bc902c2d37bd93cfc01a00214353efc1f87
  • php-devel-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:001a7369ced23421b45bb44f3483fbb450ffb1a43b2c409de1b49beeaf642a8f
  • php-embedded-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:554b425c12cd332e2a802d99a097c1a3a9f732c7b3d7abde251dd0f0b0e5b0a1
  • php-enchant-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:808966d970e87861d5f9216a552c141c381714591b2ba0c3b1b3701495094ad0
  • php-fpm-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:22be6cffb8c6b7e161fda6e8d22566aea97c611205568b87dbdc2cc0a4876139
  • php-gd-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:7b1d5a5a7bdf2eb8432a1acfe76ac89fb842f032b6d6dd099cd22692baff7f7c
  • php-imap-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:9ab7dd862b4af2a1cf3bb0806f52285130d671eb8f78904de8285d01a3cd278f
  • php-intl-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:41dda850a3d005d4faf17aab5e26d936c970666e7bfc092b01f6d7ddddd95c55
  • php-ldap-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:01ede054d9e5548cb8b1e1cf9c8f7f4353b42550f7fd64add9c66107b64dfe26
  • php-mbstring-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:9cb8872c6ff97b56406f5e3c337bc7538ba9163b2315d23ff6aa0a14540e5112
  • php-mysql-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:99489dcbfaa8e92ed642ddf8087896b68e2cfb0820e5bf154f51c02ea67e9e4c
  • php-odbc-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:d3235306a029af469a04913d762f21ae7da23d3be317fb372f3279ea7c007d3f
  • php-pdo-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:0d36a2f2c909730439dc8179a34103adda89b15a0775cf73514e0cac7a1cf9a2
  • php-pgsql-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:a73790b3ebb9a4d5808d91f1e7e2bc314aaf638d309cf26d0f0c88583ff90260
  • php-process-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:8e18a0879b1f977b3324823f0ff92d2bf7634ca3400a4a982f8406d06625ebcd
  • php-pspell-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:d3674ce95d406df04d98355bbd8b23825faa2871d812089e0d09beb99d1eb88e
  • php-recode-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:cd762cc06079a4020a847eeb0d84bce7f25895bcb5412ee7519513b8d2210628
  • php-snmp-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:fa2cf202b5207b91b725a7de9655c9202e3a392c9f8337858433f1e23b37f48a
  • php-soap-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:dae1ef90164643d6428a0a2edeca16efb22d3f3411785f289138fd9b1d89ac06
  • php-tidy-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:24b11407aea10316f340db3c94962aeaceddde9b8f6de9e9250366dac0f59c17
  • php-xml-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:a1b1a441b9a2ff48dfd405dcdd30a90fb45f29af8c8e2b3c867118f8bc51ef8b
  • php-xmlrpc-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:5daaaf1f8ebae72d63f949e3ed8996777ff946be673db5fe7428799b7c33147d
  • php-zts-5.3.3-55.el6.tuxcare.els15.x86_64.rpm
    sha:80f38407b14ad02a2ae6748ab4e3877261d30f16cb1b043328e85bf11d770233
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.