Oval Definition:oval:org.opensuse.security:def:69258
Revision Date:2021-12-06Version:1
Title:Recommended update for php7 (Moderate)
Description:

This update for php7 fixes the following issues:

- CVE-2021-21703: Fixed local privilege escalation via PHP-FPM (bsc#1192050). - CVE-2021-21707: Fixed special character breaks path in xml parsing (bsc#1193041).

- Added patch to prevent memory access violation in php7 when running test suite (bsc#1175508)
Family:unixClass:patch
Status:Reference(s):1051510
1055117
1071995
1083647
1083710
1088047
1094555
1098633
1103990
1103991
1103992
1104745
1106383
1109837
1111666
1112374
1114279
1114685
1119113
1119222
1119532
1120423
1123080
1125703
1127034
1127315
1127611
1128432
1128902
1129770
1130836
1132390
1133021
1133401
1133738
1134090
1134097
1134390
1134395
1134399
1134730
1134738
1135153
1135296
1135335
1135556
1135642
1135897
1136156
1136157
1136161
1136217
1136264
1136271
1136333
1136342
1136343
1136345
1136348
1136460
1136461
1136462
1136467
1137103
1137194
1137224
1137366
1137429
1137458
1137534
1137535
1137584
1137586
1137609
1137625
1137728
1137811
1137827
1137884
1137985
1138263
1138291
1138293
1138336
1138374
1138375
1138589
1138681
1138719
1138732
1138874
1138879
1139358
1139619
1139712
1139751
1139771
1139865
1140133
1140139
1140228
1140322
1140328
1140405
1140424
1140428
1140454
1140463
1140559
1140575
1140577
1140637
1140652
1140658
1140676
1140715
1140719
1140726
1140727
1140728
1140814
1140887
1140888
1140889
1140891
1140893
1140903
1140945
1140948
1140954
1140955
1140956
1140957
1140958
1140959
1140960
1140961
1140962
1140964
1140971
1140972
1140992
1141312
1141401
1141402
1141452
1141453
1141454
1141478
1141558
1142023
1142052
1142083
1142112
1142115
1142119
1142220
1142221
1142265
1142350
1142351
1142354
1142359
1142450
1142623
1142673
1142701
1142868
1143003
1143105
1143185
1143189
1143191
1143209
1143507
1171746
1172437
1175508
1192050
1193041
CVE-2018-1000199
CVE-2018-16871
CVE-2018-20836
CVE-2018-20855
CVE-2019-10638
CVE-2019-10639
CVE-2019-1125
CVE-2019-11478
CVE-2019-11599
CVE-2019-11810
CVE-2019-12614
CVE-2019-12817
CVE-2019-12818
CVE-2019-12819
CVE-2019-13233
CVE-2019-13631
CVE-2019-13648
CVE-2019-14283
CVE-2019-14284
CVE-2020-10757
CVE-2021-21703
CVE-2021-21707
SUSE-SU-2019:2069-1
SUSE-SU-2021:3943-1
Platform(s):SUSE Linux Enterprise High Performance Computing 15 SP2
SUSE Linux Enterprise Module for Live Patching 15 SP1
SUSE Linux Enterprise Module for Public Cloud 15 SP1
SUSE Linux Enterprise Module for Web Scripting 15 SP2
SUSE Linux Enterprise Server 15 SP2
SUSE Linux Enterprise Server for SAP Applications 15 SP2
SUSE Linux Enterprise Storage 7
SUSE Manager Proxy 4.1
SUSE Manager Server 4.1
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-197_34-default-4-2 is installed
  • OR kernel-livepatch-SLE15-SP1_Update_9-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Public Cloud 15 SP1 is installed
  • AND Package Information
  • kernel-azure-4.12.14-8.13 is installed
  • OR kernel-azure-base-4.12.14-8.13 is installed
  • OR kernel-azure-devel-4.12.14-8.13 is installed
  • OR kernel-devel-azure-4.12.14-8.13 is installed
  • OR kernel-source-azure-4.12.14-8.13 is installed
  • OR kernel-syms-azure-4.12.14-8.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 SP2 is installed
  • AND Package Information
  • apache2-mod_php7-7.4.6-3.29.1 is installed
  • OR php7-7.4.6-3.29.1 is installed
  • OR php7-bcmath-7.4.6-3.29.1 is installed
  • OR php7-bz2-7.4.6-3.29.1 is installed
  • OR php7-calendar-7.4.6-3.29.1 is installed
  • OR php7-ctype-7.4.6-3.29.1 is installed
  • OR php7-curl-7.4.6-3.29.1 is installed
  • OR php7-dba-7.4.6-3.29.1 is installed
  • OR php7-devel-7.4.6-3.29.1 is installed
  • OR php7-dom-7.4.6-3.29.1 is installed
  • OR php7-enchant-7.4.6-3.29.1 is installed
  • OR php7-exif-7.4.6-3.29.1 is installed
  • OR php7-fastcgi-7.4.6-3.29.1 is installed
  • OR php7-fileinfo-7.4.6-3.29.1 is installed
  • OR php7-fpm-7.4.6-3.29.1 is installed
  • OR php7-ftp-7.4.6-3.29.1 is installed
  • OR php7-gd-7.4.6-3.29.1 is installed
  • OR php7-gettext-7.4.6-3.29.1 is installed
  • OR php7-gmp-7.4.6-3.29.1 is installed
  • OR php7-iconv-7.4.6-3.29.1 is installed
  • OR php7-intl-7.4.6-3.29.1 is installed
  • OR php7-json-7.4.6-3.29.1 is installed
  • OR php7-ldap-7.4.6-3.29.1 is installed
  • OR php7-mbstring-7.4.6-3.29.1 is installed
  • OR php7-mysql-7.4.6-3.29.1 is installed
  • OR php7-odbc-7.4.6-3.29.1 is installed
  • OR php7-opcache-7.4.6-3.29.1 is installed
  • OR php7-openssl-7.4.6-3.29.1 is installed
  • OR php7-pcntl-7.4.6-3.29.1 is installed
  • OR php7-pdo-7.4.6-3.29.1 is installed
  • OR php7-pgsql-7.4.6-3.29.1 is installed
  • OR php7-phar-7.4.6-3.29.1 is installed
  • OR php7-posix-7.4.6-3.29.1 is installed
  • OR php7-readline-7.4.6-3.29.1 is installed
  • OR php7-shmop-7.4.6-3.29.1 is installed
  • OR php7-snmp-7.4.6-3.29.1 is installed
  • OR php7-soap-7.4.6-3.29.1 is installed
  • OR php7-sockets-7.4.6-3.29.1 is installed
  • OR php7-sodium-7.4.6-3.29.1 is installed
  • OR php7-sqlite-7.4.6-3.29.1 is installed
  • OR php7-sysvmsg-7.4.6-3.29.1 is installed
  • OR php7-sysvsem-7.4.6-3.29.1 is installed
  • OR php7-sysvshm-7.4.6-3.29.1 is installed
  • OR php7-tidy-7.4.6-3.29.1 is installed
  • OR php7-tokenizer-7.4.6-3.29.1 is installed
  • OR php7-xmlreader-7.4.6-3.29.1 is installed
  • OR php7-xmlrpc-7.4.6-3.29.1 is installed
  • OR php7-xmlwriter-7.4.6-3.29.1 is installed
  • OR php7-xsl-7.4.6-3.29.1 is installed
  • OR php7-zip-7.4.6-3.29.1 is installed
  • OR php7-zlib-7.4.6-3.29.1 is installed
  • BACK