Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:61259

Опубликовано: 31 авг. 2026
Источник: rocky
Оценка: Low

Описание

Low: php security, bug fix, and enhancement update

PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server.

Security Fix(es):

  • php: ext/openssl: memory corruption in openssl_encrypt with AES-WRAP-PAD (CVE-2026-14355)

  • php: ext-pgsql: PHP: SQL injection via improper backslash escaping (CVE-2026-17543)

  • php: PHP: Denial of Service via circular symbolic links in phar archives (CVE-2026-7260)

Bug Fix(es) and Enhancement(s):

  • Backport fix for CVE-2026-14355 to PHP 8.0 in 9.8.z (JIRA:Rocky Linux-192624)

  • Backport fix for CVE-2026-17543 and CVE-2026-7260 to PHP 8.0 in 9.8.z (JIRA:Rocky Linux-223940)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
phpaarch648.el9_8php-8.0.30-8.el9_8.aarch64.rpm
php-bcmathaarch648.el9_8php-bcmath-8.0.30-8.el9_8.aarch64.rpm
php-cliaarch648.el9_8php-cli-8.0.30-8.el9_8.aarch64.rpm
php-commonaarch648.el9_8php-common-8.0.30-8.el9_8.aarch64.rpm
php-dbaaarch648.el9_8php-dba-8.0.30-8.el9_8.aarch64.rpm
php-dbgaarch648.el9_8php-dbg-8.0.30-8.el9_8.aarch64.rpm
php-develaarch648.el9_8php-devel-8.0.30-8.el9_8.aarch64.rpm
php-embeddedaarch648.el9_8php-embedded-8.0.30-8.el9_8.aarch64.rpm
php-enchantaarch648.el9_8php-enchant-8.0.30-8.el9_8.aarch64.rpm
php-ffiaarch648.el9_8php-ffi-8.0.30-8.el9_8.aarch64.rpm

Показывать по

Связанные уязвимости

oracle-oval
11 дней назад

ELSA-2026-61259-0: php security, bug fix, and enhancement update (LOW)

suse-cvrf
около 1 месяца назад

Security update for php8

rocky
11 дней назад

Important: php security, bug fix, and enhancement update

rocky
13 дней назад

Important: php:7.4 security, bug fix, and enhancement update

rocky
13 дней назад

Important: php:8.2 security, bug fix, and enhancement update