Release Info

Advisory: CLSA-2022:1663866333

OS: EL 8

Public date: 2022-09-22 00:00:00

Project: php

Version: 7.0.33-67.el8

Errata link: https://errata.tuxcare.com/els_lang_php/el8/CLSA-2022-1663866333.html

Changelog

- ELS-189: Fix for Harden PHP - CVE-2022-31625: Fix freeing of uninitialized memory leading to RCE - CVE-2022-31626: Fix buffer overflow in mysqlnd driver leading to RCE

Update

Update command: yum update alt-php*

Packages list

alt-php70-ldap-7.0.33-67.el8.x86_64.rpm alt-php70-soap-7.0.33-67.el8.x86_64.rpm alt-php70-firebird-7.0.33-67.el8.x86_64.rpm alt-php70-mcrypt-7.0.33-67.el8.x86_64.rpm alt-php70-pgsql-7.0.33-67.el8.x86_64.rpm alt-php70-recode-7.0.33-67.el8.x86_64.rpm alt-php70-snmp-7.0.33-67.el8.x86_64.rpm alt-php70-mysqlnd-7.0.33-67.el8.x86_64.rpm alt-php70-imap-7.0.33-67.el8.x86_64.rpm alt-php70-odbc-7.0.33-67.el8.x86_64.rpm alt-php70-gd-7.0.33-67.el8.x86_64.rpm alt-php70-intl-7.0.33-67.el8.x86_64.rpm alt-php70-process-7.0.33-67.el8.x86_64.rpm alt-php70-common-7.0.33-67.el8.x86_64.rpm alt-php70-devel-7.0.33-67.el8.x86_64.rpm alt-php70-enchant-7.0.33-67.el8.x86_64.rpm alt-php70-cli-7.0.33-67.el8.x86_64.rpm alt-php70-pspell-7.0.33-67.el8.x86_64.rpm alt-php70-7.0.33-67.el8.x86_64.rpm alt-php70-mbstring-7.0.33-67.el8.x86_64.rpm alt-php70-xml-7.0.33-67.el8.x86_64.rpm alt-php70-opcache-7.0.33-67.el8.x86_64.rpm alt-php70-tidy-7.0.33-67.el8.x86_64.rpm alt-php70-bcmath-7.0.33-67.el8.x86_64.rpm alt-php70-xmlrpc-7.0.33-67.el8.x86_64.rpm alt-php70-dba-7.0.33-67.el8.x86_64.rpm alt-php70-pdo-7.0.33-67.el8.x86_64.rpm

CVEs

CVE-2022-31625
CVE-2022-31626