OPENSUSE-SU-2021:1570-1

Advisory lineage Upstream: 2 Downstream: 0
Published: 10 Dec 2021, 17:06
Last modified:04 Feb 2026, 02:31

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

10 Dec 2021, 17:06
Published
Vulnerability first disclosed
04 Feb 2026, 02:31
Last Modified
Vulnerability information updated

Description

Recommended update for php7 This update for php7 fixes the following issues: - CVE-2021-21703: Fixed local privilege escalation via PHP-FPM (bsc#1192050). - CVE-2021-21707: Fixed special character breaks path in xml parsing (bsc#1193041). - Added patch to prevent memory access violation in php7 when running test suite (bsc#1175508) This update was imported from the SUSE:SLE-15-SP2:Update update project.

Affected Systems

  • opensusephp7-test&distro=openSUSE Leap 15.2

    < 7.4.6-lp152.2.21.1

  • opensusephp7&distro=openSUSE Leap 15.2

    < 7.4.6-lp152.2.21.1

References (6)