Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

php-common-7.4.33-29.module_php.7.4.el10.remi RPM for x86_64

From Remi's RPM Modular for RedHat EL 10 for x86_64

Name: php-common Distribution: Unknown
Version: 7.4.33 Vendor: Remi's RPM repository <https://rpms.remirepo.net/> #StandWithUkraine #NoAI
Release: 29.module_php.7.4.el10.remi Build date: Tue Oct 6 15:29:07 2026
Group: Development/Languages Build host: builder.remirepo.net
Size: 7081468 Source RPM: php-7.4.33-29.module_php.7.4.el10.remi.src.rpm
Packager: Remi Collet
Url: http://www.php.net/
Summary: Common files for PHP
The php-common package contains files used by both the php
package and the php-cli package.

Provides

Requires

License

PHP and BSD

Changelog

* Thu Oct 01 2026 Remi Collet <remi@remirepo.net> - 7.4.33-29
  - Fix FILTER_SANITIZE_ENCODED does not encode 0xFF
  - Fix IPv6 ACL bypass in FastCGI listen.allowed_clients due to partial address comparison
    CVE-2026-91768
  - Fixed Various packet overreads in mysqlnd wire protocol
    CVE-2025-1218
  - Fix TLS hostname verification falls back to CN after SAN mismatch
    CVE-2026-91769
  - Fix Heap buffer overflow in php_openssl_matches_wildcard_name() on crafted server certificate wildcard CN
    CVE-2026-91767
  - Fix Integer overflow in phar_tar_number() allowing TAR archive entry injection
    CVE-2026-6103
  - Fix Unbounded recursion in server-side cleanup_xml_node()
    CVE-2026-91765
  - Fix Integer overflow to buffer overflow in SOAP HTTP parsing
    CVE-2025-14181
  - Fix Out-of-bounds read in convert.* stream filters when line-break-chars contains NUL
    CVE-2026-92842
  - Fix Cross-origin credential leak in HTTP stream wrapper redirects
    CVE-2026-91766
  - Fix Out-of-bounds read in the HTTP stream wrapper when following a redirect with an empty Location header
    CVE-2026-93682
* Thu Jul 30 2026 Remi Collet <remi@remirepo.net> - 7.4.33-28
  - Fix leak on double DatePeriod::__construct() call
  - Fixed SQL injection via E'...' backslash breakout
    CVE-2026-17543
  - Fixed GHSA-vc5h-9ppw-p5f3 Crash via recursive symlinks
    CVE-2026-7260
* Wed Jul 01 2026 Remi Collet <remi@remirepo.net> - 7.4.33-27
  - Fix Memory corruption (zend_mm_heap corrupted) in openssl_encrypt with AES-WRAP-PAD
    CVE-2026-14355
* Tue May 12 2026 Remi Collet <remi@remirepo.net> - 7.4.33-26
  - Fix XSS within status endpoint
    CVE-2026-6735
  - Fix Stale SOAP_GLOBAL(ref_map) pointer with Apache Map
    CVE-2026-6722
  - Fix Use-after-free after header parsing failure with SOAP_PERSISTENCE_SESSION
    CVE-2026-7261
  - Fix Broken Apache map value NULL check
    CVE-2026-7262
  - Fix Signed integer overflow of char array offset
    CVE-2026-7568
  - Fix Consistently pass unsigned char to ctype.h functions
    CVE-2026-7258
* Thu Dec 18 2025 Remi Collet <remi@remirepo.net> - 7.4.33-25
  - Fix Null byte termination in dns_get_record()
    GHSA-www2-q4fc-65wf
  - Fix Heap buffer overflow in array_merge()
    CVE-2025-14178
  - Fix Information Leak of Memory in getimagesize
    CVE-2025-14177
* Thu Jul 03 2025 Remi Collet <remi@remirepo.net> - 7.4.33-24
  - Fix pgsql extension does not check for errors during escaping
    CVE-2025-1735
  - Fix NULL Pointer Dereference in PHP SOAP Extension via Large XML Namespace Prefix
    CVE-2025-6491
  - Fix Null byte termination in hostnames
    CVE-2025-1220
* Mon Mar 17 2025 Remi Collet <remi@remirepo.net> - 7.4.33-23
  - Fix libxml streams use wrong `content-type` header when requesting a redirected resource
    CVE-2025-1219
  - Fix Stream HTTP wrapper header check might omit basic auth header
    CVE-2025-1736
  - Fix Stream HTTP wrapper truncate redirect location to 1024 bytes
    CVE-2025-1861
  - Fix Streams HTTP wrapper does not fail for headers without colon
    CVE-2025-1734
  - Fix Header parser of `http` stream wrapper does not handle folded headers
    CVE-2025-1217
  - use oracle client library version 23.7 on x86_64 and aarch64
* Thu Feb 13 2025 Remi Collet <remi@remirepo.net> - 7.4.33-22
  - backport fix for ICU 74+
  - backport fix strict prototypes
* Wed Nov 27 2024 Remi Collet <remi@remirepo.net> - 7.4.33-21
  - Fix Leak partial content of the heap through heap buffer over-read
    CVE-2024-8929
* Fri Nov 22 2024 Remi Collet <remi@remirepo.net> - 7.4.33-20
  - Fix Heap-Use-After-Free in sapi_read_post_data Processing in CLI SAPI Interface
    GHSA-4w77-75f9-2c8w
  - Fix OOB access in ldap_escape
    CVE-2024-8932
  - Fix Integer overflow in the dblib/firebird quoter causing OOB writes
    CVE-2024-11236
  - Fix Configuring a proxy in a stream context might allow for CRLF injection in URIs
    CVE-2024-11234
  - Fix Single byte overread with convert.quoted-printable-decode filter
    CVE-2024-11233
* Fri Nov 15 2024 Remi Collet <remi@remirepo.net> - 7.4.33-19
  - disable firebird on EL-10

Files

/etc/php.d
/etc/php.d/20-bz2.ini
/etc/php.d/20-calendar.ini
/etc/php.d/20-ctype.ini
/etc/php.d/20-curl.ini
/etc/php.d/20-exif.ini
/etc/php.d/20-fileinfo.ini
/etc/php.d/20-ftp.ini
/etc/php.d/20-gettext.ini
/etc/php.d/20-iconv.ini
/etc/php.d/20-phar.ini
/etc/php.d/20-sockets.ini
/etc/php.d/20-tokenizer.ini
/etc/php.ini
/usr/lib/.build-id
/usr/lib/.build-id/06
/usr/lib/.build-id/06/882e8dea66918c698a4df1c086b6fd62b47e25
/usr/lib/.build-id/0a
/usr/lib/.build-id/0a/d809aaf612f04da2960f822167ef6cf2e07081
/usr/lib/.build-id/14
/usr/lib/.build-id/14/821da89545569d4adbc67f899f7c08ecb42f85
/usr/lib/.build-id/45
/usr/lib/.build-id/45/9145a4a9b9296414fc61d92d2cd699318adbd6
/usr/lib/.build-id/4c
/usr/lib/.build-id/4c/947c55d1247c73a30d2d1b54218886ab14bb74
/usr/lib/.build-id/53
/usr/lib/.build-id/53/4f16d11c7ae29f99d2fce10470f324c565b98e
/usr/lib/.build-id/7e
/usr/lib/.build-id/7e/6f38d6ea6c75e6a2c90fbbf8b1782d8002612c
/usr/lib/.build-id/9b
/usr/lib/.build-id/9b/cfd8ffd5230f2999d1cb69f7647199cc83e8bd
/usr/lib/.build-id/d9
/usr/lib/.build-id/d9/a3d891ae6de942df38783ae883139e9596b04b
/usr/lib/.build-id/df
/usr/lib/.build-id/df/367845384c58026967c21ec42ce7f103082895
/usr/lib/.build-id/ec
/usr/lib/.build-id/ec/d6d76a63f6efe45e372c6117b87c8e707dc08c
/usr/lib/.build-id/fb
/usr/lib/.build-id/fb/362fe2032d7425aab0cd0a4e7299523af775f3
/usr/lib64/php
/usr/lib64/php/modules
/usr/lib64/php/modules/bz2.so
/usr/lib64/php/modules/calendar.so
/usr/lib64/php/modules/ctype.so
/usr/lib64/php/modules/curl.so
/usr/lib64/php/modules/exif.so
/usr/lib64/php/modules/fileinfo.so
/usr/lib64/php/modules/ftp.so
/usr/lib64/php/modules/gettext.so
/usr/lib64/php/modules/iconv.so
/usr/lib64/php/modules/phar.so
/usr/lib64/php/modules/sockets.so
/usr/lib64/php/modules/tokenizer.so
/usr/share/doc/pecl
/usr/share/doc/php-common
/usr/share/doc/php-common/CODING_STANDARDS.md
/usr/share/doc/php-common/CONTRIBUTING.md
/usr/share/doc/php-common/EXTENSIONS
/usr/share/doc/php-common/NEWS
/usr/share/doc/php-common/README.REDIST.BINS
/usr/share/doc/php-common/README.md
/usr/share/doc/php-common/UPGRADING
/usr/share/doc/php-common/UPGRADING.INTERNALS
/usr/share/doc/php-common/docs
/usr/share/doc/php-common/docs/input-filter.md
/usr/share/doc/php-common/docs/mailinglist-rules.md
/usr/share/doc/php-common/docs/output-api.md
/usr/share/doc/php-common/docs/parameter-parsing-api.md
/usr/share/doc/php-common/docs/release-process.md
/usr/share/doc/php-common/docs/self-contained-extensions.md
/usr/share/doc/php-common/docs/streams.md
/usr/share/doc/php-common/docs/unix-build-system.md
/usr/share/doc/php-common/php.ini-development
/usr/share/doc/php-common/php.ini-production
/usr/share/licenses/php-common
/usr/share/licenses/php-common/LICENSE
/usr/share/licenses/php-common/TSRM_LICENSE
/usr/share/licenses/php-common/ZEND_LICENSE
/usr/share/licenses/php-common/libmagic_LICENSE
/usr/share/licenses/php-common/timelib_LICENSE
/usr/share/php
/usr/share/tests
/usr/share/tests/pecl
/var/lib/php
/var/lib/php/peclxml


Generated by rpm2html 1.8.1

Fabrice Bellet, Wed Oct 7 13:12:58 2026