php-5.4.16-48.0.3.el7.AXS7
エラータID: AXSA:2024-9004:04
リリース日:
2024/11/14 Thursday - 15:52
題名:
php-5.4.16-48.0.3.el7.AXS7
影響のあるチャネル:
Asianux Server 7 for x86_64
Severity:
Moderate
Description:
以下項目について対処しました。
[Security Fix]
- PHP には、HTTP POST リクエスト内のマルチパートフォーム
データの解析処理に問題があるため、リモートの攻撃者により、
細工された HTTP POST リクエストの処理を介して、送信された
データの改ざんや、これに起因する不正なアプリケーションの
動作を可能とする脆弱性が存在します。(CVE-2024-8925)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2024-8925
In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, erroneous parsing of multipart form data contained in an HTTP POST request could lead to legitimate data not being processed. This could lead to malicious attacker able to control part of the submitted data being able to exclude portion of other data, potentially leading to erroneous application behavior.
In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, erroneous parsing of multipart form data contained in an HTTP POST request could lead to legitimate data not being processed. This could lead to malicious attacker able to control part of the submitted data being able to exclude portion of other data, potentially leading to erroneous application behavior.
追加情報:
N/A
ダウンロード:
Asianux Server 7 for x86_64
- php-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: 86e4a20e9ec81d96fb53626df59bf245
SHA-256: 2106800721272f46ab74a31dd4eb98064e750001e785f2b575a6c01fd3711c89
Size: 1.36 MB - php-bcmath-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: bb2bb39b01906b25543e0690243daab9
SHA-256: 77f8c695b54f9e77dda3f3895ee3083963a45e3586f98ce0dda3895450e06ab8
Size: 58.89 kB - php-cli-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: 1941d1c0731b20652fb064a05bd7d237
SHA-256: ecb712d8350a8859f8041272ce417b7a5b26da83eb9243f7aaa83ab36708d0bb
Size: 2.75 MB - php-common-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: 92b4ad50ec167c0d66cc5830e4a86c3b
SHA-256: e5afc0f982e8d41f7ea2a86eac0b80ed72cb44b9b6402d06b949354b51d202c6
Size: 566.16 kB - php-gd-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: 97b482089d1884b837361390aa517a99
SHA-256: b598bee700e2fb294ef36c474830aabcfec2346afa5f5a4a332eb7299db1f532
Size: 128.75 kB - php-ldap-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: 67f93c762712d5aa0670533f2624bfb6
SHA-256: ae0ef202e5041eed8c13ca9bee9bfc6f658e94ec90b4a8f948abf1c3c7d62ace
Size: 53.86 kB - php-mbstring-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: 4d94c19581ec5d77bd0049eb0086e520
SHA-256: 2895833f383057869352b92a0aa74d36f47cbf400850b63e483f567788bc6488
Size: 506.34 kB - php-mysql-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: cebdf41fd103e9b52d36c072b5fc87b7
SHA-256: 74835c7e0a6f705b2bff4375e4184f97516ccd4ce49c25e0185a447711117831
Size: 102.49 kB - php-odbc-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: 759b1591cd1803a754f50d35e9663aff
SHA-256: 4348f763b28905c8a6c550d31803ce3b9b9f273f8e39749517c2d1b085526ed0
Size: 66.77 kB - php-pdo-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: 67797b7f1d1ea0028a56424de87b5a2a
SHA-256: 1bb7ea1f879e27d840f8299cac6a6211a09842d2bf42f95ac324d40ceff1aa07
Size: 100.10 kB - php-pgsql-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: 76288a3a253a6fac9d64b11dc754efd9
SHA-256: 72687c82478bb2e2759426126024d0e48bf4f14f72efa9190e8ee9f7ab731f20
Size: 87.34 kB - php-process-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: 9a34d58128fca3bf1ee79c0f6cb2ec2a
SHA-256: 090d625f94a8688f06defaa4f7f908632b82b58f9fa6047c8bde810427225c44
Size: 57.17 kB - php-recode-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: 958aad4239a30fa9bfaa60a39f37593d
SHA-256: 893734e7a38c7a24cf9c26133373eeaa6bd13dc60e25dd386ad6853398614440
Size: 39.81 kB - php-soap-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: 16ead29aa3aba77c2feb027c2610a28d
SHA-256: 4441fc77b1711ea18ea10f7d8ac3deee223f63348f74b251b549ef78627168a7
Size: 160.05 kB - php-xml-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: 005a383a35959b0234088d3e2ef1145a
SHA-256: 0148412789e33c8e04500e10971d7180c56c9cab5883b205fad7707e8a5012a3
Size: 128.40 kB - php-xmlrpc-5.4.16-48.0.3.el7.AXS7.x86_64.rpm
MD5: cf12525ce3b1edeebea6f6683f128610
SHA-256: 0000fc9811fdecd6df91c40628864812f7aad364d6a07d16e46f2a4223f036ce
Size: 69.45 kB