MGASA-2023-0234 - Updated php packages fix security vulnerability

Publication date: 19 Jul 2023
URL: https://advisories.mageia.org/MGASA-2023-0234.html
Type: security
Affected Mageia releases: 8
CVE: CVE-2023-3247

Fixed SOAP bug GHSA-76gg-c692-v2mw (Missing error check and insufficient
random bytes in HTTP Digest authentication for SOAP). (CVE-2023-3247)

References:
- https://bugs.mageia.org/show_bug.cgi?id=32075
- https://www.php.net/ChangeLog-8.php#8.0.29
- https://ubuntu.com/security/notices/USN-6199-1
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3247

SRPMS:
- 8/core/php-8.0.29-1.mga8

Mageia 2023-0234: php security update

Fixed SOAP bug GHSA-76gg-c692-v2mw (Missing error check and insufficient random bytes in HTTP Digest authentication for SOAP)

Summary

Fixed SOAP bug GHSA-76gg-c692-v2mw (Missing error check and insufficient random bytes in HTTP Digest authentication for SOAP). (CVE-2023-3247)

References

- https://bugs.mageia.org/show_bug.cgi?id=32075

- https://www.php.net/ChangeLog-8.php#8.0.29

- https://ubuntu.com/security/notices/USN-6199-1

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3247

Resolution

MGASA-2023-0234 - Updated php packages fix security vulnerability

SRPMS

- 8/core/php-8.0.29-1.mga8

Severity
Publication date: 19 Jul 2023
URL: https://advisories.mageia.org/MGASA-2023-0234.html
Type: security
CVE: CVE-2023-3247

Related News