Release Info

Advisory: CLSA-2023:1695537252

OS: Ubuntu 20.04 PHP

Public date: 2023-09-24 02:34:14

Project: php

Version: 5.6.40-73

Errata link: https://errata.cloudlinux.com/php-els/ubuntu20_04/CLSA-2023-1695537252.html

Changelog

* Fix for hardened PHP - CVE-2023-3823: Fix external entity loading in XML without enabling by sanitizing libxml2 globals before parsing - CVE-2023-3824: Fix buffer mismanagement in phar_dir_read()

Update

Update command: apt-get update apt-get --only-upgrade install alt-php*

Packages list

alt-php56_5.6.40-73_amd64.deb alt-php56-bcmath_5.6.40-73_amd64.deb alt-php56-cli_5.6.40-73_amd64.deb alt-php56-common_5.6.40-73_amd64.deb alt-php56-dba_5.6.40-73_amd64.deb alt-php56-dbx_5.6.40-73_amd64.deb alt-php56-dev_5.6.40-73_amd64.deb alt-php56-enchant_5.6.40-73_amd64.deb alt-php56-firebird_5.6.40-73_amd64.deb alt-php56-gd_5.6.40-73_amd64.deb alt-php56-imap_5.6.40-73_amd64.deb alt-php56-intl_5.6.40-73_amd64.deb alt-php56-ldap_5.6.40-73_amd64.deb alt-php56-mbstring_5.6.40-73_amd64.deb alt-php56-mcrypt_5.6.40-73_amd64.deb alt-php56-mysqlnd_5.6.40-73_amd64.deb alt-php56-odbc_5.6.40-73_amd64.deb alt-php56-opcache_5.6.40-73_amd64.deb alt-php56-pdo_5.6.40-73_amd64.deb alt-php56-pgsql_5.6.40-73_amd64.deb alt-php56-process_5.6.40-73_amd64.deb alt-php56-pspell_5.6.40-73_amd64.deb alt-php56-recode_5.6.40-73_amd64.deb alt-php56-snmp_5.6.40-73_amd64.deb alt-php56-soap_5.6.40-73_amd64.deb alt-php56-sybase_5.6.40-73_amd64.deb alt-php56-tidy_5.6.40-73_amd64.deb alt-php56-xml_5.6.40-73_amd64.deb alt-php56-xmlrpc_5.6.40-73_amd64.deb

CVEs

CVE-2023-3823
CVE-2023-3824