Release Info

Advisory: CLSA-2025:1739821812

OS: AlmaLinux 9.2 ESU

Public date: 2025-02-17 14:50:15

Project: php

Version: 8.0.30-1.el9_2.tuxcare.els4

Errata link: https://errata.tuxcare.com/els_os/almalinux9.2esu/CLSA-2025-1739821812.html

Changelog

- CVE-2024-8925: fix erroneous parsing of multipart form data contained in an HTTP POST request - CVE-2024-9026: fix log tampering in PHP-FPM - CVE-2024-5458: fix early-out for ipv6 hostname validation, ensure full check is performed

Update

Update command: dnf update php*

Packages list

php-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-bcmath-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-cli-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-common-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-dba-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-dbg-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-devel-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-embedded-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-enchant-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-ffi-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-fpm-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-gd-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-gmp-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-intl-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-ldap-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-mbstring-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-mysqlnd-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-odbc-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-opcache-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-pdo-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-pgsql-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-process-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-snmp-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-soap-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm php-xml-8.0.30-1.el9_2.tuxcare.els4.x86_64.rpm

CVEs

CVE-2024-9026
CVE-2024-8925
CVE-2024-5458