Oracle Linux Security Advisory ELSA-2022-5468

http://linux.oracle.com/errata/ELSA-2022-5468.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
apcu-panel-5.1.20-1.module+el8.6.0+20568+84712317.noarch.rpm
libzip-1.7.3-1.module+el8.6.0+20568+84712317.x86_64.rpm
libzip-devel-1.7.3-1.module+el8.6.0+20568+84712317.x86_64.rpm
libzip-tools-1.7.3-1.module+el8.6.0+20568+84712317.x86_64.rpm
php-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-bcmath-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-cli-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-common-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-dba-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-dbg-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-devel-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-embedded-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-enchant-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-ffi-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-fpm-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-gd-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-gmp-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-intl-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-ldap-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-mbstring-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-mysqlnd-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-odbc-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-opcache-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-pdo-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-pear-1.10.13-1.module+el8.6.0+20568+84712317.noarch.rpm
php-pecl-apcu-5.1.20-1.module+el8.6.0+20568+84712317.x86_64.rpm
php-pecl-apcu-devel-5.1.20-1.module+el8.6.0+20568+84712317.x86_64.rpm
php-pecl-rrd-2.0.3-1.module+el8.6.0+20568+84712317.x86_64.rpm
php-pecl-xdebug3-3.1.2-1.module+el8.6.0+20568+84712317.x86_64.rpm
php-pecl-zip-1.19.2-1.module+el8.6.0+20568+84712317.x86_64.rpm
php-pgsql-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-process-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-snmp-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-soap-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm
php-xml-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm

aarch64:
apcu-panel-5.1.20-1.module+el8.6.0+20568+84712317.noarch.rpm
libzip-1.7.3-1.module+el8.6.0+20568+84712317.aarch64.rpm
libzip-devel-1.7.3-1.module+el8.6.0+20568+84712317.aarch64.rpm
libzip-tools-1.7.3-1.module+el8.6.0+20568+84712317.aarch64.rpm
php-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-bcmath-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-cli-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-common-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-dba-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-dbg-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-devel-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-embedded-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-enchant-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-ffi-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-fpm-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-gd-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-gmp-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-intl-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-ldap-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-mbstring-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-mysqlnd-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-odbc-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-opcache-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-pdo-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-pear-1.10.13-1.module+el8.6.0+20568+84712317.noarch.rpm
php-pecl-apcu-5.1.20-1.module+el8.6.0+20568+84712317.aarch64.rpm
php-pecl-apcu-devel-5.1.20-1.module+el8.6.0+20568+84712317.aarch64.rpm
php-pecl-rrd-2.0.3-1.module+el8.6.0+20568+84712317.aarch64.rpm
php-pecl-xdebug3-3.1.2-1.module+el8.6.0+20568+84712317.aarch64.rpm
php-pecl-zip-1.19.2-1.module+el8.6.0+20568+84712317.aarch64.rpm
php-pgsql-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-process-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-snmp-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-soap-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm
php-xml-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/libzip-1.7.3-1.module+el8.6.0+20568+84712317.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/php-8.0.13-3.module+el8.6.0+20694+4397942f.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/php-pear-1.10.13-1.module+el8.6.0+20568+84712317.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/php-pecl-apcu-5.1.20-1.module+el8.6.0+20568+84712317.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/php-pecl-rrd-2.0.3-1.module+el8.6.0+20568+84712317.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/php-pecl-xdebug3-3.1.2-1.module+el8.6.0+20568+84712317.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/php-pecl-zip-1.19.2-1.module+el8.6.0+20568+84712317.src.rpm

Related CVEs:

CVE-2022-31626




Description of changes:

php
[8.0.13-3]
- fix password of excessive length triggers buffer overflow leading to RCE
  CVE-2022-31626

_______________________________________________
El-errata mailing list
El-errata@oss.oracle.com
https://oss.oracle.com/mailman/listinfo/el-errata

Oracle8: ELSA-2022-5468: php Important Security Update

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Summary

php [8.0.13-3] - fix password of excessive length triggers buffer overflow leading to RCE CVE-2022-31626

SRPMs

http://oss.oracle.com/ol8/SRPMS-updates/libzip-1.7.3-1.module+el8.6.0+20568+84712317.src.rpm http://oss.oracle.com/ol8/SRPMS-updates/php-8.0.13-3.module+el8.6.0+20694+4397942f.src.rpm http://oss.oracle.com/ol8/SRPMS-updates/php-pear-1.10.13-1.module+el8.6.0+20568+84712317.src.rpm http://oss.oracle.com/ol8/SRPMS-updates/php-pecl-apcu-5.1.20-1.module+el8.6.0+20568+84712317.src.rpm http://oss.oracle.com/ol8/SRPMS-updates/php-pecl-rrd-2.0.3-1.module+el8.6.0+20568+84712317.src.rpm http://oss.oracle.com/ol8/SRPMS-updates/php-pecl-xdebug3-3.1.2-1.module+el8.6.0+20568+84712317.src.rpm http://oss.oracle.com/ol8/SRPMS-updates/php-pecl-zip-1.19.2-1.module+el8.6.0+20568+84712317.src.rpm

x86_64

apcu-panel-5.1.20-1.module+el8.6.0+20568+84712317.noarch.rpm libzip-1.7.3-1.module+el8.6.0+20568+84712317.x86_64.rpm libzip-devel-1.7.3-1.module+el8.6.0+20568+84712317.x86_64.rpm libzip-tools-1.7.3-1.module+el8.6.0+20568+84712317.x86_64.rpm php-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-bcmath-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-cli-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-common-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-dba-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-dbg-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-devel-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-embedded-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-enchant-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-ffi-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-fpm-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-gd-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-gmp-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-intl-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-ldap-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-mbstring-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-mysqlnd-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-odbc-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-opcache-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-pdo-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-pear-1.10.13-1.module+el8.6.0+20568+84712317.noarch.rpm php-pecl-apcu-5.1.20-1.module+el8.6.0+20568+84712317.x86_64.rpm php-pecl-apcu-devel-5.1.20-1.module+el8.6.0+20568+84712317.x86_64.rpm php-pecl-rrd-2.0.3-1.module+el8.6.0+20568+84712317.x86_64.rpm php-pecl-xdebug3-3.1.2-1.module+el8.6.0+20568+84712317.x86_64.rpm php-pecl-zip-1.19.2-1.module+el8.6.0+20568+84712317.x86_64.rpm php-pgsql-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-process-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-snmp-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-soap-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm php-xml-8.0.13-3.module+el8.6.0+20694+4397942f.x86_64.rpm

aarch64

apcu-panel-5.1.20-1.module+el8.6.0+20568+84712317.noarch.rpm libzip-1.7.3-1.module+el8.6.0+20568+84712317.aarch64.rpm libzip-devel-1.7.3-1.module+el8.6.0+20568+84712317.aarch64.rpm libzip-tools-1.7.3-1.module+el8.6.0+20568+84712317.aarch64.rpm php-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-bcmath-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-cli-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-common-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-dba-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-dbg-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-devel-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-embedded-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-enchant-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-ffi-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-fpm-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-gd-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-gmp-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-intl-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-ldap-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-mbstring-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-mysqlnd-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-odbc-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-opcache-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-pdo-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-pear-1.10.13-1.module+el8.6.0+20568+84712317.noarch.rpm php-pecl-apcu-5.1.20-1.module+el8.6.0+20568+84712317.aarch64.rpm php-pecl-apcu-devel-5.1.20-1.module+el8.6.0+20568+84712317.aarch64.rpm php-pecl-rrd-2.0.3-1.module+el8.6.0+20568+84712317.aarch64.rpm php-pecl-xdebug3-3.1.2-1.module+el8.6.0+20568+84712317.aarch64.rpm php-pecl-zip-1.19.2-1.module+el8.6.0+20568+84712317.aarch64.rpm php-pgsql-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-process-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-snmp-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-soap-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm php-xml-8.0.13-3.module+el8.6.0+20694+4397942f.aarch64.rpm

i386

Severity
Related CVEs: CVE-2022-31626

Related News