[CLSA-2026:1779462837] alt-php71: Fix of 5 CVEs
Type:
security
Severity:
Critical
Release date:
2026-05-22 15:14:03 UTC
Description:
- CVE-2026-6722: soap extension use-after-free via apache:Map duplicate keys - CVE-2026-7262: soap extension NULL pointer deref via apache:Map missing value - CVE-2026-6735: php-fpm status endpoint XSS via unescaped request_uri - CVE-2026-7261: soap SoapServer use-after-free after header parsing failure when SOAP_PERSISTENCE_SESSION is set - CVE-2026-7568: metaphone() signed integer overflow when called with >INT_MAX byte input on 64-bit builds
Updated packages:
  • alt-php71-7.1.33-89.el8.x86_64.rpm
    sha:693728afbda6c8e07778505652bc82aff25d103a144b3a39b8373600b8700527
  • alt-php71-bcmath-7.1.33-89.el8.x86_64.rpm
    sha:7ec77c7c6815a8e22b217dc4c9ca796ac9fe8e17101818da4a23dba5fc5bdd8e
  • alt-php71-cli-7.1.33-89.el8.x86_64.rpm
    sha:a7169273796ac133f8806bc80eb942d17aa210aadb3a70a1d24bb20d5c475103
  • alt-php71-common-7.1.33-89.el8.x86_64.rpm
    sha:6d2e0d58529d238bdb62c17ac08cc385c6d9ca4629d86f3942611ad5c0754769
  • alt-php71-dba-7.1.33-89.el8.x86_64.rpm
    sha:31c0c64709b70ce4e10c30dd3529d31009facb6458a18a3f4ceee2dbfb865952
  • alt-php71-devel-7.1.33-89.el8.x86_64.rpm
    sha:9de07304328c2d01922f65e1d5cbe39a0de993c9838a636e1fdd31104bbf4306
  • alt-php71-enchant-7.1.33-89.el8.x86_64.rpm
    sha:58e6cbac69fc712818c1d9ef25ebfa363a2616deafb560002ca1e3600314ff7a
  • alt-php71-firebird-7.1.33-89.el8.x86_64.rpm
    sha:08beae2a11e0fa5d79a145cba70f8c7463e8b21ec1df21fd60e7fc032c96aa25
  • alt-php71-gd-7.1.33-89.el8.x86_64.rpm
    sha:9125b0b2385c0b98822936f72eb6ce2e6e6d326bf8d3c2246200463c92e74169
  • alt-php71-imap-7.1.33-89.el8.x86_64.rpm
    sha:93a9d84ef54da1810e4d37ddb8d6844ec2fd0b3376b43a8905795c56ed6625c7
  • alt-php71-intl-7.1.33-89.el8.x86_64.rpm
    sha:e9a9711b76f4932e1fabdd81263eec986a76f69d7589c6be5f446acec1d93178
  • alt-php71-ldap-7.1.33-89.el8.x86_64.rpm
    sha:a0d8ae8dddfb4ae551fee59c46e4a3840d5713765e0b6dbea290224d8d95687d
  • alt-php71-mbstring-7.1.33-89.el8.x86_64.rpm
    sha:142cace7b6c71d4474f50af40979b0a1c09955a9557b296b4f338d4d42ebeb2e
  • alt-php71-mcrypt-7.1.33-89.el8.x86_64.rpm
    sha:477acd04155723772c1de37cdaa3581aa024e69df738b8f72c126a982f79c752
  • alt-php71-mysqlnd-7.1.33-89.el8.x86_64.rpm
    sha:8d0537f53b68ad1134e189781476f435c0058e4c06aa43f9aef553e02e5aab88
  • alt-php71-odbc-7.1.33-89.el8.x86_64.rpm
    sha:68207185d431c64e0c1b3d819ba485f9f98f66695ec7d9fd3ce82d89c3faa9b1
  • alt-php71-opcache-7.1.33-89.el8.x86_64.rpm
    sha:56ae3cc139c126aae6cd20f3b6da8eb777a7c8c4d6c685b2a1a13bb6742ea78b
  • alt-php71-pdo-7.1.33-89.el8.x86_64.rpm
    sha:8272cc2456a405ba8de908f05e4b1bfff2850535c9db2a8f7da634f8c2c73a8f
  • alt-php71-pgsql-7.1.33-89.el8.x86_64.rpm
    sha:771358d620ea950b9217fa310504a4836dd33d2d0c9d2276bb078df4792b9ee6
  • alt-php71-php-fpm-7.1.33-89.el8.x86_64.rpm
    sha:f6edd5cd3b08e717d550fa8b2e1e5d15aeb4524a7a7382f38203c7d0ad48596a
  • alt-php71-process-7.1.33-89.el8.x86_64.rpm
    sha:20b4ae71d0e31b510703620f11b5a5a7b31d287ab91eb424971f1090caafaf96
  • alt-php71-pspell-7.1.33-89.el8.x86_64.rpm
    sha:36b8ae4d77c69b18929ab116b9f005f0bb5d13c5cb8f6f9043f80bb6afeed8c5
  • alt-php71-recode-7.1.33-89.el8.x86_64.rpm
    sha:30b2e3caa05a904509d5d539df2de9430f10ef5dcfb3f46f15b5dff6ef9be8b4
  • alt-php71-snmp-7.1.33-89.el8.x86_64.rpm
    sha:42d9675429930526f333639078c573c682f2376b8102e13cc1631868bc9d592b
  • alt-php71-soap-7.1.33-89.el8.x86_64.rpm
    sha:fe456d0a027b3ca3bbc43d114e0ff3d9241590ee8e996bcbd5b7f839a98811c0
  • alt-php71-tidy-7.1.33-89.el8.x86_64.rpm
    sha:2d2a08846ed3a8eab2a2dc61f05964935e41acdd20cdcbe5b1a01ba68f84ffd0
  • alt-php71-xml-7.1.33-89.el8.x86_64.rpm
    sha:f6537d14880ba5cce60313776abcdab869815c5aa818cc24dcd8139da9d671f1
  • alt-php71-xmlrpc-7.1.33-89.el8.x86_64.rpm
    sha:5a9595a692984197180790578a5fa99969942addf9062b2662f8cdebdcaebc59
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.