Release Info

Advisory: CLSA-2024:1729198334

OS: CentOS 8.4 ELS

Public date: 2024-10-17 16:52:16

Project: php

Version: 7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12

Errata link: https://errata.tuxcare.com/els_os/centos8.4els/CLSA-2024-1729198334.html

Changelog

- CVE-2024-9026: Fix log tampering in PHP-FPM - CVE-2024-8927: Fix bypass of cgi.force_redirect configuration

Update

Update command: dnf update php*

Packages list

php-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-bcmath-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-cli-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-common-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-dba-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-dbg-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-devel-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-embedded-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-enchant-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-ffi-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-fpm-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-gd-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-gmp-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-intl-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-json-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-ldap-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-mbstring-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-mysqlnd-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-odbc-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-opcache-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-pdo-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-pgsql-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-process-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-snmp-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-soap-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-xml-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm php-xmlrpc-7.4.6-4.module_el8.4.0+2223+ad7c69fc.tuxcare.els12.x86_64.rpm

CVEs

CVE-2024-9026
CVE-2024-8927