Release Info

Advisory: CLSA-2025:1746744863

OS: Ubuntu 20.04

Public date: 2025-05-08 22:54:25

Project: php

Version: 7.2.34-52

Errata link: https://errata.cloudlinux.com/php-els/ubuntu20_04/CLSA-2025-1746744863.html

Changelog

* Security fixes - CVE-2017-8923: fix integer overflow when concatenating strings - CVE-2017-9118: fix out of bounds access in php_pcre_replace_impl - CVE-2017-9119: handle memory limit error during string reallocation correctly - CVE-2017-9120: Integer overflow in mysqli_real_escape_string()

Update

Update command: apt-get update apt-get --only-upgrade install alt-php*

Packages list

alt-php72_7.2.34-52_amd64.deb alt-php72-bcmath_7.2.34-52_amd64.deb alt-php72-cli_7.2.34-52_amd64.deb alt-php72-common_7.2.34-52_amd64.deb alt-php72-dba_7.2.34-52_amd64.deb alt-php72-dev_7.2.34-52_amd64.deb alt-php72-enchant_7.2.34-52_amd64.deb alt-php72-firebird_7.2.34-52_amd64.deb alt-php72-fpm_7.2.34-52_amd64.deb alt-php72-gd_7.2.34-52_amd64.deb alt-php72-imap_7.2.34-52_amd64.deb alt-php72-intl_7.2.34-52_amd64.deb alt-php72-ldap_7.2.34-52_amd64.deb alt-php72-mbstring_7.2.34-52_amd64.deb alt-php72-mysqlnd_7.2.34-52_amd64.deb alt-php72-odbc_7.2.34-52_amd64.deb alt-php72-opcache_7.2.34-52_amd64.deb alt-php72-pdo_7.2.34-52_amd64.deb alt-php72-pgsql_7.2.34-52_amd64.deb alt-php72-process_7.2.34-52_amd64.deb alt-php72-pspell_7.2.34-52_amd64.deb alt-php72-recode_7.2.34-52_amd64.deb alt-php72-snmp_7.2.34-52_amd64.deb alt-php72-soap_7.2.34-52_amd64.deb alt-php72-sodium_7.2.34-52_amd64.deb alt-php72-tidy_7.2.34-52_amd64.deb alt-php72-xml_7.2.34-52_amd64.deb alt-php72-xmlrpc_7.2.34-52_amd64.deb

CVEs

CVE-2017-9118
CVE-2017-8923
CVE-2017-9120
CVE-2019-9025
CVE-2017-9119