Release Info

Advisory: CLSA-2022:1664205265

OS: Ubuntu 16.04 PHP

Public date: 2022-09-26 00:00:00

Project: php

Version: 7.3.33-6

Errata link: https://errata.cloudlinux.com/php-els/ubuntu16_04/CLSA-2022-1664205265.html

Changelog

* ELS-189: Fix for Harden PHP - CVE-2022-31625: Fix freeing of uninitialized memory leading to RCE - CVE-2022-31626: Fix buffer overflow in mysqlnd driver leading to RCE

Update

Update command: apt-get update apt-get --only-upgrade install alt-php*

Packages list

alt-php73_7.3.33-6_amd64.deb alt-php73-bcmath_7.3.33-6_amd64.deb alt-php73-cli_7.3.33-6_amd64.deb alt-php73-common_7.3.33-6_amd64.deb alt-php73-dba_7.3.33-6_amd64.deb alt-php73-dev_7.3.33-6_amd64.deb alt-php73-enchant_7.3.33-6_amd64.deb alt-php73-firebird_7.3.33-6_amd64.deb alt-php73-gd_7.3.33-6_amd64.deb alt-php73-imap_7.3.33-6_amd64.deb alt-php73-intl_7.3.33-6_amd64.deb alt-php73-ldap_7.3.33-6_amd64.deb alt-php73-mbstring_7.3.33-6_amd64.deb alt-php73-mysqlnd_7.3.33-6_amd64.deb alt-php73-odbc_7.3.33-6_amd64.deb alt-php73-opcache_7.3.33-6_amd64.deb alt-php73-pdo_7.3.33-6_amd64.deb alt-php73-pgsql_7.3.33-6_amd64.deb alt-php73-process_7.3.33-6_amd64.deb alt-php73-pspell_7.3.33-6_amd64.deb alt-php73-recode_7.3.33-6_amd64.deb alt-php73-snmp_7.3.33-6_amd64.deb alt-php73-soap_7.3.33-6_amd64.deb alt-php73-sodium_7.3.33-6_amd64.deb alt-php73-tidy_7.3.33-6_amd64.deb alt-php73-xml_7.3.33-6_amd64.deb alt-php73-xmlrpc_7.3.33-6_amd64.deb

CVEs

CVE-2022-31626
CVE-2022-31625