RHSA-2018:1296
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: rh-php70-php security, bug fix, and enhancement update
CVSS Metrics
- v3.0•HIGH•Score: 8.1CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Systems
- redhat•rh-php70-php
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-bcmath
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-cli
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-common
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-dba
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-dbg
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-debuginfo
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-devel
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-embedded
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-enchant
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-fpm
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-gd
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-gmp
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-imap
< 0:7.0.27-1.el6
- redhat•rh-php70-php-intl
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-json
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-ldap
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-mbstring
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-mysqlnd
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-odbc
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-opcache
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-pdo
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-pgsql
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-process
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-pspell
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-recode
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-snmp
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-soap
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-tidy
< 0:7.0.27-1.el6
- redhat•rh-php70-php-xml
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-xmlrpc
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
- redhat•rh-php70-php-zip
< 0:7.0.27-1.el6 | < 0:7.0.27-1.el7
References (153)
- https://access.redhat.com/errata/RHSA-2018:1296
- https://access.redhat.com/security/updates/classification/#moderate
- https://access.redhat.com/documentation/en-us/red_hat_software_collections/3/html/3.1_release_notes/chap-rhscl#sect-RHSCL-Changes-php
- https://bugzilla.redhat.com/show_bug.cgi?id=1377311
- https://bugzilla.redhat.com/show_bug.cgi?id=1377314
- https://bugzilla.redhat.com/show_bug.cgi?id=1377336
- https://bugzilla.redhat.com/show_bug.cgi?id=1377340
- https://bugzilla.redhat.com/show_bug.cgi?id=1377344
- https://bugzilla.redhat.com/show_bug.cgi?id=1377352
- https://bugzilla.redhat.com/show_bug.cgi?id=1404723
- https://bugzilla.redhat.com/show_bug.cgi?id=1404726
- https://bugzilla.redhat.com/show_bug.cgi?id=1404731
- https://bugzilla.redhat.com/show_bug.cgi?id=1404735
- https://bugzilla.redhat.com/show_bug.cgi?id=1412631
- https://bugzilla.redhat.com/show_bug.cgi?id=1412686
- https://bugzilla.redhat.com/show_bug.cgi?id=1418984
- https://bugzilla.redhat.com/show_bug.cgi?id=1418986
- https://bugzilla.redhat.com/show_bug.cgi?id=1419010
- https://bugzilla.redhat.com/show_bug.cgi?id=1419012
- https://bugzilla.redhat.com/show_bug.cgi?id=1419015
- https://bugzilla.redhat.com/show_bug.cgi?id=1419018
- https://bugzilla.redhat.com/show_bug.cgi?id=1419020
- https://bugzilla.redhat.com/show_bug.cgi?id=1466730
- https://bugzilla.redhat.com/show_bug.cgi?id=1466736
- https://bugzilla.redhat.com/show_bug.cgi?id=1466739
- https://bugzilla.redhat.com/show_bug.cgi?id=1466740
- https://bugzilla.redhat.com/show_bug.cgi?id=1466746
- https://bugzilla.redhat.com/show_bug.cgi?id=1471824
- https://bugzilla.redhat.com/show_bug.cgi?id=1471827
- https://bugzilla.redhat.com/show_bug.cgi?id=1471834
- https://bugzilla.redhat.com/show_bug.cgi?id=1471842
- https://bugzilla.redhat.com/show_bug.cgi?id=1473822
- https://bugzilla.redhat.com/show_bug.cgi?id=1475373
- https://bugzilla.redhat.com/show_bug.cgi?id=1475522
- https://bugzilla.redhat.com/show_bug.cgi?id=1484837
- https://bugzilla.redhat.com/show_bug.cgi?id=1484838
- https://bugzilla.redhat.com/show_bug.cgi?id=1484839
- https://bugzilla.redhat.com/show_bug.cgi?id=1512057
- https://bugzilla.redhat.com/show_bug.cgi?id=1535246
- https://bugzilla.redhat.com/show_bug.cgi?id=1535251
- https://security.access.redhat.com/data/csaf/v2/advisories/2018/rhsa-2018_1296.json
- https://access.redhat.com/security/cve/CVE-2016-7412
- https://www.cve.org/CVERecord?id=CVE-2016-7412
- https://nvd.nist.gov/vuln/detail/CVE-2016-7412
- https://access.redhat.com/security/cve/CVE-2016-7413
- https://www.cve.org/CVERecord?id=CVE-2016-7413
- https://nvd.nist.gov/vuln/detail/CVE-2016-7413
- https://access.redhat.com/security/cve/CVE-2016-7414
- https://www.cve.org/CVERecord?id=CVE-2016-7414
- https://nvd.nist.gov/vuln/detail/CVE-2016-7414
- https://access.redhat.com/security/cve/CVE-2016-7416
- https://www.cve.org/CVERecord?id=CVE-2016-7416
- https://nvd.nist.gov/vuln/detail/CVE-2016-7416
- https://access.redhat.com/security/cve/CVE-2016-7417
- https://www.cve.org/CVERecord?id=CVE-2016-7417
- https://nvd.nist.gov/vuln/detail/CVE-2016-7417
- https://access.redhat.com/security/cve/CVE-2016-7418
- https://www.cve.org/CVERecord?id=CVE-2016-7418
- https://nvd.nist.gov/vuln/detail/CVE-2016-7418
- https://access.redhat.com/security/cve/CVE-2016-7479
- https://www.cve.org/CVERecord?id=CVE-2016-7479
- https://nvd.nist.gov/vuln/detail/CVE-2016-7479
- https://blog.checkpoint.com/wp-content/uploads/2016/12/PHP_Technical_Report.pdf
- https://access.redhat.com/security/cve/CVE-2016-9933
- https://www.cve.org/CVERecord?id=CVE-2016-9933
- https://nvd.nist.gov/vuln/detail/CVE-2016-9933
- https://access.redhat.com/security/cve/CVE-2016-9934
- https://www.cve.org/CVERecord?id=CVE-2016-9934
- https://nvd.nist.gov/vuln/detail/CVE-2016-9934
- https://access.redhat.com/security/cve/CVE-2016-9935
- https://www.cve.org/CVERecord?id=CVE-2016-9935
- https://nvd.nist.gov/vuln/detail/CVE-2016-9935
- https://access.redhat.com/security/cve/CVE-2016-9936
- https://www.cve.org/CVERecord?id=CVE-2016-9936
- https://nvd.nist.gov/vuln/detail/CVE-2016-9936
- https://access.redhat.com/security/cve/CVE-2016-10158
- https://www.cve.org/CVERecord?id=CVE-2016-10158
- https://nvd.nist.gov/vuln/detail/CVE-2016-10158
- https://access.redhat.com/security/cve/CVE-2016-10159
- https://www.cve.org/CVERecord?id=CVE-2016-10159
- https://nvd.nist.gov/vuln/detail/CVE-2016-10159
- https://access.redhat.com/security/cve/CVE-2016-10160
- https://www.cve.org/CVERecord?id=CVE-2016-10160
- https://nvd.nist.gov/vuln/detail/CVE-2016-10160
- https://access.redhat.com/security/cve/CVE-2016-10161
- https://www.cve.org/CVERecord?id=CVE-2016-10161
- https://nvd.nist.gov/vuln/detail/CVE-2016-10161
- https://access.redhat.com/security/cve/CVE-2016-10162
- https://www.cve.org/CVERecord?id=CVE-2016-10162
- https://nvd.nist.gov/vuln/detail/CVE-2016-10162
- https://access.redhat.com/security/cve/CVE-2016-10167
- https://www.cve.org/CVERecord?id=CVE-2016-10167
- https://nvd.nist.gov/vuln/detail/CVE-2016-10167
- https://access.redhat.com/security/cve/CVE-2016-10168
- https://www.cve.org/CVERecord?id=CVE-2016-10168
- https://nvd.nist.gov/vuln/detail/CVE-2016-10168
- https://access.redhat.com/security/cve/CVE-2017-5340
- https://www.cve.org/CVERecord?id=CVE-2017-5340
- https://nvd.nist.gov/vuln/detail/CVE-2017-5340
- https://access.redhat.com/security/cve/CVE-2017-7890
- https://www.cve.org/CVERecord?id=CVE-2017-7890
- https://nvd.nist.gov/vuln/detail/CVE-2017-7890
- https://access.redhat.com/security/cve/CVE-2017-9224
- https://www.cve.org/CVERecord?id=CVE-2017-9224
- https://nvd.nist.gov/vuln/detail/CVE-2017-9224
- https://access.redhat.com/security/cve/CVE-2017-9226
- https://www.cve.org/CVERecord?id=CVE-2017-9226
- https://nvd.nist.gov/vuln/detail/CVE-2017-9226
- https://access.redhat.com/security/cve/CVE-2017-9227
- https://www.cve.org/CVERecord?id=CVE-2017-9227
- https://nvd.nist.gov/vuln/detail/CVE-2017-9227
- https://access.redhat.com/security/cve/CVE-2017-9228
- https://www.cve.org/CVERecord?id=CVE-2017-9228
- https://nvd.nist.gov/vuln/detail/CVE-2017-9228
- https://access.redhat.com/security/cve/CVE-2017-9229
- https://www.cve.org/CVERecord?id=CVE-2017-9229
- https://nvd.nist.gov/vuln/detail/CVE-2017-9229
- https://access.redhat.com/security/cve/CVE-2017-11143
- https://www.cve.org/CVERecord?id=CVE-2017-11143
- https://nvd.nist.gov/vuln/detail/CVE-2017-11143
- https://access.redhat.com/security/cve/CVE-2017-11144
- https://www.cve.org/CVERecord?id=CVE-2017-11144
- https://nvd.nist.gov/vuln/detail/CVE-2017-11144
- https://access.redhat.com/security/cve/CVE-2017-11145
- https://www.cve.org/CVERecord?id=CVE-2017-11145
- https://nvd.nist.gov/vuln/detail/CVE-2017-11145
- https://access.redhat.com/security/cve/CVE-2017-11147
- https://www.cve.org/CVERecord?id=CVE-2017-11147
- https://nvd.nist.gov/vuln/detail/CVE-2017-11147
- https://access.redhat.com/security/cve/CVE-2017-11362
- https://www.cve.org/CVERecord?id=CVE-2017-11362
- https://nvd.nist.gov/vuln/detail/CVE-2017-11362
- https://access.redhat.com/security/cve/CVE-2017-11628
- https://www.cve.org/CVERecord?id=CVE-2017-11628
- https://nvd.nist.gov/vuln/detail/CVE-2017-11628
- https://access.redhat.com/security/cve/CVE-2017-12932
- https://www.cve.org/CVERecord?id=CVE-2017-12932
- https://nvd.nist.gov/vuln/detail/CVE-2017-12932
- https://access.redhat.com/security/cve/CVE-2017-12933
- https://www.cve.org/CVERecord?id=CVE-2017-12933
- https://nvd.nist.gov/vuln/detail/CVE-2017-12933
- https://access.redhat.com/security/cve/CVE-2017-12934
- https://www.cve.org/CVERecord?id=CVE-2017-12934
- https://nvd.nist.gov/vuln/detail/CVE-2017-12934
- https://access.redhat.com/security/cve/CVE-2017-16642
- https://www.cve.org/CVERecord?id=CVE-2017-16642
- https://nvd.nist.gov/vuln/detail/CVE-2017-16642
- https://access.redhat.com/security/cve/CVE-2018-5711
- https://www.cve.org/CVERecord?id=CVE-2018-5711
- https://nvd.nist.gov/vuln/detail/CVE-2018-5711
- https://access.redhat.com/security/cve/CVE-2018-5712
- https://www.cve.org/CVERecord?id=CVE-2018-5712
- https://nvd.nist.gov/vuln/detail/CVE-2018-5712