Release date:
2025-09-04 19:37:36 UTC
Description:
* SECURITY UPDATE: misinterpretation of HTTP response headers
- debian/patches/CVE-2025-1217.patch: adds HTTP header folding support
for HTTP wrapper response headers in ext/standard/http_fopen_wrapper.c
- CVE-2025-1217
* SECURITY UPDATE: insufficient HTTP header validation
- debian/patches/CVE-2025-1734.patch: adds logic to fail invalid HTTP
headers in ext/standard/http_fopen_wrapper.c
- CVE-2025-1734
* SECURITY UPDATE: http redirect location truncation
- debian/patches/CVE-2025-1861.patch: converts the allocation of location
to be on heap instead of stack and errors if the location length is
greater than 8086 bytes in ext/standard/http_fopen_wrapper.c
- CVE-2025-1861
* SECURITY UPDATE: insufficient HTTP header validation
- debian/patches/CVE-2025-1736.patch: updates the http user header check
for crlf in ext/standard/http_fopen_wrapper.c
- CVE-2025-1736
Updated packages:
-
libapache2-mod-php7.2_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:54360ccd2c01493945164e48cc350baa5efb0785
-
libphp7.2-embed_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:51198ea24ad8a2bc45a4d6fcf390510a1c6a7eac
-
php7.2_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_all.deb
sha:e276b71701a517fb559a2fa14ebb10da7237929d
-
php7.2-bcmath_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:dc788fc60942e4157adb14aeeb6b30c23de03260
-
php7.2-bz2_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:72d58c152cc999170f8c01d219a04f44e9bea291
-
php7.2-cgi_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:599c38d6c4ba1aa22d67d32f885f6ae98c81c98e
-
php7.2-cli_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:faa328cd1920d882666d2f85fa52812012e9cc76
-
php7.2-common_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:6b9423b38f2ffbff75d213fbf8aa955859a2d780
-
php7.2-curl_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:157a64552f6c66e07db3a6aedf8da2401306fee8
-
php7.2-dba_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:2550d2e096dcfb29ccf7d209dccd2bebbcbc9888
-
php7.2-dev_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:dbc08a38c3d171b9ae92a7586b85494fb0d56421
-
php7.2-enchant_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:79a7337fc0ed6403b96c08ce60cc7a2684b4a2fe
-
php7.2-fpm_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:13c50fe893e3befdcf3b0bed1aa1def891f6cb18
-
php7.2-gd_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:c08cb2492cc1ad28c3d65d815e921ecdb366e613
-
php7.2-gmp_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:e739e398653fb3bbfe8a8f72686abdf57beb4e41
-
php7.2-imap_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:e9c7b367bf6677e347fc9357919aed72c4a3db04
-
php7.2-interbase_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:87699a9873022c41a7467fbf69ebc05bfd0d3400
-
php7.2-intl_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:1d79610ba23f91ca5147a5e481365fd4d5ddbeaa
-
php7.2-json_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:bc717bd75c2bf1bcc52d38568cff6be7400261d7
-
php7.2-ldap_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:f869ce6fe1f2eb3ff5c80a93e74ca6afc3f78a0f
-
php7.2-mbstring_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:0905a111ebbd50d184e19db0192d3fb855b2529c
-
php7.2-mysql_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:da199656beecb0ce1133606cf8e9d392d948b52d
-
php7.2-odbc_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:f7669385f5286ce45c09d54d17324a3553eaa64c
-
php7.2-opcache_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:450e6c1fe84164a4d5f1dc177d55ba59e2ba2331
-
php7.2-pgsql_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:0386d60fdea5fd4dbb19f18bfe159d16333aa091
-
php7.2-phpdbg_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:d0c59de1d3a2b09a72da7ce21c1bda8f8ae7402e
-
php7.2-pspell_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:45aabff60f5d3e1a2678b53656f4c9f5e2a83ef8
-
php7.2-readline_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:6a61fc6794d5061152245bda417a7a7a6fa8435d
-
php7.2-recode_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:45881719a94912e6739dca9143a60959ac59e04f
-
php7.2-snmp_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:528c28910d0d250a3710497356129bae0b77a1c0
-
php7.2-soap_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:f44385c6b1339b1c3db9fc0dbfbe41958a6bd118
-
php7.2-sqlite3_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:0e08f2252ebbcdcc1dba0f750b3ebb83e61a6a16
-
php7.2-sybase_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:2dea7ee90f4fa78e373d56e7b33993a7dc139cb1
-
php7.2-tidy_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:0ca6a8d76483a152bd914451f55023d6d4f18d6d
-
php7.2-xml_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:8fe79d6a415fe32e4e2f15071b14107eb9d31ce8
-
php7.2-xmlrpc_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:27e04a537910186af323a374ad62ab978b2f54eb
-
php7.2-xsl_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_all.deb
sha:12a154a1b72b21634bfe8abcc85e8a19e7c72a7e
-
php7.2-zip_7.2.24-0ubuntu0.18.04.17+tuxcare.els10_amd64.deb
sha:9bea97e94ffc0c1327ee2dc0106a7a03116d51de
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.