unspecified

php80-php-fpm - PHP FastCGI Process Manager

Website: http://www.php.net/
License: PHP and Zend and BSD and MIT and ASL 1.0 and NCSA
Vendor: Remi's RPM repository <https://rpms.remirepo.net/> #StandWithUkraine
Description:
PHP-FPM (FastCGI Process Manager) is an alternative PHP FastCGI
implementation with some additional features useful for sites of
any size, especially busier sites.

Packages

php80-php-fpm-8.0.30-16.el8.remi.x86_64 [1.7 MiB] Changelog by Remi Collet (2026-05-11):
- Fix XSS within status endpoint
  CVE-2026-6735
- Fix Null pointer dereference in php_mb_check_encoding() via mb_ereg_search_init()
  CVE-2026-7259
- Fix SQL injection via NUL bytes in quoted strings
  CVE-2025-14179
- Fix Stale SOAP_GLOBAL(ref_map) pointer with Apache Map
  CVE-2026-6722
- Fix Use-after-free after header parsing failure with SOAP_PERSISTENCE_SESSION
  CVE-2026-7261
- Fix Broken Apache map value NULL check
  CVE-2026-7262
- Fix Signed integer overflow of char array offset
  CVE-2026-7568
- Fix Consistently pass unsigned char to ctype.h functions
  CVE-2026-7258
php80-php-fpm-8.0.30-15.el8.remi.x86_64 [1.7 MiB] Changelog by Remi Collet (2025-12-18):
- Fix Null byte termination in dns_get_record()
  GHSA-www2-q4fc-65wf
- Fix Heap buffer overflow in array_merge()
  CVE-2025-14178
- Fix Information Leak of Memory in getimagesize
  CVE-2025-14177
php80-php-fpm-8.0.30-14.el8.remi.x86_64 [1.7 MiB] Changelog by Remi Collet (2025-07-03):
- Fix pgsql extension does not check for errors during escaping
  CVE-2025-1735
- Fix NULL Pointer Dereference in PHP SOAP Extension via Large XML Namespace Prefix
  CVE-2025-6491
- Fix Null byte termination in hostnames
  CVE-2025-1220

Listing created by Repoview-0.6.6-16.el8.sme