Release Info

Advisory: CLSA-2022:1663862178

OS: EL 7 PHP

Public date: 2022-09-22 00:00:00

Project: php

Version: 7.3.33-6.el7

Errata link: https://errata.cloudlinux.com/php-els/el7/CLSA-2022-1663862178.html

Changelog

- ELS-189: Fix for Harden PHP - CVE-2022-31625: Fix freeing of uninitialized memory leading to RCE - CVE-2022-31626: Fix buffer overflow in mysqlnd driver leading to RCE

Update

Update command: yum update alt-php*

Packages list

alt-php73-tidy-7.3.33-6.el7.x86_64.rpm alt-php73-enchant-7.3.33-6.el7.x86_64.rpm alt-php73-xml-7.3.33-6.el7.x86_64.rpm alt-php73-cli-7.3.33-6.el7.x86_64.rpm alt-php73-process-7.3.33-6.el7.x86_64.rpm alt-php73-pdo-7.3.33-6.el7.x86_64.rpm alt-php73-soap-7.3.33-6.el7.x86_64.rpm alt-php73-xmlrpc-7.3.33-6.el7.x86_64.rpm alt-php73-dba-7.3.33-6.el7.x86_64.rpm alt-php73-imap-7.3.33-6.el7.x86_64.rpm alt-php73-opcache-7.3.33-6.el7.x86_64.rpm alt-php73-devel-7.3.33-6.el7.x86_64.rpm alt-php73-intl-7.3.33-6.el7.x86_64.rpm alt-php73-mbstring-7.3.33-6.el7.x86_64.rpm alt-php73-mysqlnd-7.3.33-6.el7.x86_64.rpm alt-php73-firebird-7.3.33-6.el7.x86_64.rpm alt-php73-gd-7.3.33-6.el7.x86_64.rpm alt-php73-bcmath-7.3.33-6.el7.x86_64.rpm alt-php73-pspell-7.3.33-6.el7.x86_64.rpm alt-php73-recode-7.3.33-6.el7.x86_64.rpm alt-php73-common-7.3.33-6.el7.x86_64.rpm alt-php73-snmp-7.3.33-6.el7.x86_64.rpm alt-php73-odbc-7.3.33-6.el7.x86_64.rpm alt-php73-7.3.33-6.el7.x86_64.rpm alt-php73-pgsql-7.3.33-6.el7.x86_64.rpm alt-php73-ldap-7.3.33-6.el7.x86_64.rpm alt-php73-sodium-7.3.33-6.el7.x86_64.rpm

CVEs

CVE-2022-31625
CVE-2022-31626