Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Fedora 43 phpunit9 Important Update for Code Execution Risk 2026-8d8a292bba

fedora
Calendar Grey February 5, 2026
Dist Fedora Esm H88
Critical update for PHPUnit 9.6.34 on Fedora 43 addresses regression and security risks for safer code execution.
Version 9.6.34 - 2026-01-27 Fixed Regression introduced in PHPUnit 9.6.33 Version 9.6.33 - 2026-01-27 Changed

Summary

PHPUnit is a programmer-oriented testing framework for PHP.

It is an instance of the xUnit architecture for unit testing frameworks.

This package provides the version 9 of PHPUnit,

available using the phpunit9 command.

Documentation: https://phpunit.de/documentation.html

Update Information:

Version 9.6.34 - 2026-01-27 Fixed Regression introduced in PHPUnit 9.6.33 Version 9.6.33 - 2026-01-27 Changed To prevent Poisoned Pipeline Execution (PPE) attacks using prepared .coverage files in pull requests, a PHPT test will no longer be run if the temporary file for writing code coverage information already exists before the test runs Version 9.6.32 - 2026-01-24 Changed PHPUnit\Framework\MockObject exceptions are now subtypes of PHPUnit\Exception

Change Log

* Tue Jan 27 2026 Remi Collet - 9.6.34-1 - update to 9.6.34 * Mon Jan 26 2026 Remi Collet - 9.6.32-1 - update to 9.6.32 - raise dependency on sebastian/comparator 4.0.10 - phpspec/prophecy is optional

References


[ 1 ] Bug #2433678 - CVE-2026-24765 phpunit9: PHPUnit: Arbitrary code execution via unsafe deserialization of code coverage files [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2433678

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-8d8a292bba' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: phpunit9
Product: Fedora 43
Version: 9.6.34
Release: 1.fc43
Summary: The PHP Unit Testing framework version 9

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here