Release Info

Advisory: CLSA-2024:1729198655

OS: CentOS 8.5 ELS

Public date: 2024-10-17 16:57:38

Project: php

Version: 7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11

Errata link: https://errata.tuxcare.com/els_os/centos8.5els/CLSA-2024-1729198655.html

Changelog

- CVE-2024-9026: Fix log tampering in PHP-FPM - CVE-2024-8927: Fix bypass of cgi.force_redirect configuration

Update

Update command: dnf update php*

Packages list

php-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-bcmath-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-cli-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-common-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-dba-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-dbg-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-devel-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-embedded-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-enchant-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-ffi-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-fpm-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-gd-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-gmp-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-intl-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-json-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-ldap-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-mbstring-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-mysqlnd-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-odbc-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-opcache-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-pdo-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-pgsql-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-process-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-snmp-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-soap-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-xml-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm php-xmlrpc-7.4.19-1.module_el8.5.0+2222+2a64edd4.tuxcare.els11.x86_64.rpm

CVEs

CVE-2024-9026
CVE-2024-8927