PHP scripting language for creating dynamic web sites
Go to file
Remi Collet 1d1654b533 Fix CVEs up to 8.1.34:
Fix Heap-Use-After-Free in sapi_read_post_data Processing in CLI SAPI Interface  GHSA-4w77-75f9-2c8w
Fix Configuring a proxy in a stream context might allow for CRLF injection in URIs  CVE-2024-11234
Fix Single byte overread with convert.quoted-printable-decode filter  CVE-2024-11233
Fix Leak partial content of the heap through heap buffer over-read  CVE-2024-8929
Fix libxml streams use wrong `content-type` header when requesting a redirected resource  CVE-2025-1219
Fix Stream HTTP wrapper header check might omit basic auth header  CVE-2025-1736
Fix Stream HTTP wrapper truncate redirect location to 1024 bytes  CVE-2025-1861
Fix Streams HTTP wrapper does not fail for headers without colon  CVE-2025-1734
Fix Header parser of `http` stream wrapper does not handle folded headers  CVE-2025-1217
Fix pgsql extension does not check for errors during escaping  CVE-2025-1735
Fix NULL Pointer Dereference in PHP SOAP Extension via Large XML Namespace Prefix  CVE-2025-6491
Fix Null byte termination in hostnames  CVE-2025-1220
Fix Null byte termination in dns_get_record()  GHSA-www2-q4fc-65wf
Fix Heap buffer overflow in array_merge()  CVE-2025-14178
Fix Information Leak of Memory in getimagesize  CVE-2025-14177

Resolves: RHEL-141181
2026-01-19 08:43:37 +01:00
.gitignore fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
10-opcache.ini Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
20-ffi.ini Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
macros.php Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
nginx-fpm.conf Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
nginx-php.conf Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
opcache-default.blacklist Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php-5.6.3-datetests.patch Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php-5.6.3-phpinfo.patch Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php-7.2.0-includedir.patch Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php-7.2.0-libdb.patch Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php-7.3.3-systzdata-v19.patch Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2023-02-23 13:13:53 -05:00
php-7.4.0-embed.patch Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php-7.4.0-httpd.patch Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php-7.4.0-ldap_r.patch Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php-7.4.0-phpize.patch Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php-cve-2022-31631.patch fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
php-cve-2023-0567.patch fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
php-cve-2023-0568.patch fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
php-cve-2023-0662.patch fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
php-cve-2023-3247.patch fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
php-cve-2023-3823.patch fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
php-cve-2023-3824.patch fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
php-cve-2024-2756.patch fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
php-cve-2024-3096.patch fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
php-cve-2024-5458.patch fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
php-cve-2024-8925.patch fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
php-cve-2024-8926.patch fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
php-cve-2024-8927.patch fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
php-cve-2024-8929.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-cve-2024-8932.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-cve-2024-9026.patch fix low/moderate CVEs 2024-11-13 08:57:02 +01:00
php-cve-2024-11233.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-cve-2024-11234.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-cve-2024-11236.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-cve-2025-1217.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-cve-2025-1219.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-cve-2025-1220.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-cve-2025-1734.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-cve-2025-1735.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-cve-2025-1736.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-cve-2025-1861.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-cve-2025-6491.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-cve-2025-14177.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-cve-2025-14178.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-fpm-www.conf Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php-fpm.conf Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php-fpm.logrotate Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php-fpm.service Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php-fpm.wants Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php-ghsa-4w77-75f9-2c8w.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-ghsa-www2-q4fc-65wf.patch Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
php-keyring.gpg import sources 2023-05-16 10:31:29 +02:00
php.conf Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php.ini Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php.modconf Import rpm: de86d127d3eb83106a24e8863414e59ec6b6644a 2022-08-08 13:55:56 -04:00
php.spec Fix CVEs up to 8.1.34: 2026-01-19 08:43:37 +01:00
sources re-import sources as agreed with the maintainer 2023-06-29 14:54:06 +02:00