CLSA-2024-1706700142

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2024-1706700142
Upstream
Published
2024-01-31T11:22:25Z
Modified
2026-06-01T00:33:04.058795389Z
Summary
php: Fix of 8 CVEs
Details
  • CVE-2021-21702: Fix null pointer crash because of malformed SOAP server response
  • CVE-2021-21703: Fix error in php fpm shared memory organization leading to privilage escalation
  • CVE-2022-31625: Fix freeing of uninitialized memory leading to RCE
  • CVE-2022-31626: Fix buffer overflow in mysqlnd driver leading to RCE
  • CVE-2023-0568: Fix array overrun when appending slash to paths in DOM and XML cases
  • CVE-2023-0662: Fix DOS vulnerabality by limiting number of parsed multipart body parts and printing upload limit exceed error message only once
  • CVE-2023-3823: Fix external entity loading in XML without enabling it, by sanitizing libxml2 globals before parsing
  • CVE-2023-3824: Fix buffer mismanagement in phardirread()
References

Affected packages

TuxCare:CentOS:7
php

Package

Name
php
Purl
pkg:rpm/tuxcare/php?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-bcmath

Package

Name
php-bcmath
Purl
pkg:rpm/tuxcare/php-bcmath?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-cli

Package

Name
php-cli
Purl
pkg:rpm/tuxcare/php-cli?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-common

Package

Name
php-common
Purl
pkg:rpm/tuxcare/php-common?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-dba

Package

Name
php-dba
Purl
pkg:rpm/tuxcare/php-dba?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-devel

Package

Name
php-devel
Purl
pkg:rpm/tuxcare/php-devel?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-embedded

Package

Name
php-embedded
Purl
pkg:rpm/tuxcare/php-embedded?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-enchant

Package

Name
php-enchant
Purl
pkg:rpm/tuxcare/php-enchant?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-fpm

Package

Name
php-fpm
Purl
pkg:rpm/tuxcare/php-fpm?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-gd

Package

Name
php-gd
Purl
pkg:rpm/tuxcare/php-gd?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-intl

Package

Name
php-intl
Purl
pkg:rpm/tuxcare/php-intl?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-ldap

Package

Name
php-ldap
Purl
pkg:rpm/tuxcare/php-ldap?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-mbstring

Package

Name
php-mbstring
Purl
pkg:rpm/tuxcare/php-mbstring?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-mysql

Package

Name
php-mysql
Purl
pkg:rpm/tuxcare/php-mysql?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-mysqlnd

Package

Name
php-mysqlnd
Purl
pkg:rpm/tuxcare/php-mysqlnd?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-odbc

Package

Name
php-odbc
Purl
pkg:rpm/tuxcare/php-odbc?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-pdo

Package

Name
php-pdo
Purl
pkg:rpm/tuxcare/php-pdo?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-pgsql

Package

Name
php-pgsql
Purl
pkg:rpm/tuxcare/php-pgsql?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-process

Package

Name
php-process
Purl
pkg:rpm/tuxcare/php-process?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-pspell

Package

Name
php-pspell
Purl
pkg:rpm/tuxcare/php-pspell?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-recode

Package

Name
php-recode
Purl
pkg:rpm/tuxcare/php-recode?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-snmp

Package

Name
php-snmp
Purl
pkg:rpm/tuxcare/php-snmp?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-soap

Package

Name
php-soap
Purl
pkg:rpm/tuxcare/php-soap?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-xml

Package

Name
php-xml
Purl
pkg:rpm/tuxcare/php-xml?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"
php-xmlrpc

Package

Name
php-xmlrpc
Purl
pkg:rpm/tuxcare/php-xmlrpc?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.16-48.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1706700142.json"