Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:1412

Опубликовано: 28 янв. 2026
Источник: rocky
Оценка: Important

Описание

Important: php:8.2 security update

PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server.

Security Fix(es):

  • php: pgsql extension does not check for errors during escaping (CVE-2025-1735)

  • php: NULL Pointer Dereference in PHP SOAP Extension via Large XML Namespace Prefix (CVE-2025-6491)

  • php: PHP Hostname Null Character Vulnerability (CVE-2025-1220)

  • php: heap-based buffer overflow in array_merge() (CVE-2025-14178)

  • php: PHP: Information disclosure via getimagesize() function when reading multi-chunk images (CVE-2025-14177)

  • php: PHP: Denial of Service via invalid character sequence in PDO PostgreSQL prepared statement (CVE-2025-14180)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
apcu-panelnoarch1.module+el8.10.0+1911+f499711eapcu-panel-5.1.23-1.module+el8.10.0+1911+f499711e.noarch.rpm
apcu-panelnoarch1.module+el8.10.0+1911+f499711eapcu-panel-5.1.23-1.module+el8.10.0+1911+f499711e.noarch.rpm
libzipx86_641.module+el8.10.0+1605+02e07af7libzip-1.7.3-1.module+el8.10.0+1605+02e07af7.x86_64.rpm
libzipx86_641.module+el8.10.0+1911+f499711elibzip-1.7.3-1.module+el8.10.0+1911+f499711e.x86_64.rpm
libzip-develx86_641.module+el8.10.0+1605+02e07af7libzip-devel-1.7.3-1.module+el8.10.0+1605+02e07af7.x86_64.rpm
libzip-develx86_641.module+el8.10.0+1911+f499711elibzip-devel-1.7.3-1.module+el8.10.0+1911+f499711e.x86_64.rpm
libzip-toolsx86_641.module+el8.10.0+1605+02e07af7libzip-tools-1.7.3-1.module+el8.10.0+1605+02e07af7.x86_64.rpm
libzip-toolsx86_641.module+el8.10.0+1911+f499711elibzip-tools-1.7.3-1.module+el8.10.0+1911+f499711e.x86_64.rpm
phpx86_641.module+el8.10.0+40072+7124940cphp-8.2.30-1.module+el8.10.0+40072+7124940c.x86_64.rpm
php-bcmathx86_641.module+el8.10.0+40072+7124940cphp-bcmath-8.2.30-1.module+el8.10.0+40072+7124940c.x86_64.rpm

Показывать по

Связанные уязвимости

rocky
7 дней назад

Important: php:8.2 security update

oracle-oval
7 дней назад

ELSA-2026-1412: php:8.2 security update (IMPORTANT)

oracle-oval
6 дней назад

ELSA-2026-1409: php:8.2 security update (IMPORTANT)

suse-cvrf
9 дней назад

Security update for php8

suse-cvrf
26 дней назад

Security update for php8