RHSA-2019:3736: Critical: php:7.3 security update
PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server.Security Fix(es): php: underflow in envpathinfo in fpmmain.c (CVE-2019-11043) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/libzipto a version that resolves this vulnerability.Fixed in 1.5.2-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/phpto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-pearto a version that resolves this vulnerability.Fixed in 1.10.9-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/php-pecl-apcuto a version that resolves this vulnerability.Fixed in 5.1.17-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/php-pecl-zipto a version that resolves this vulnerability.Fixed in 1.15.4-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/apcu-panelto a version that resolves this vulnerability.Fixed in 5.1.17-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/libzip-debuginfoto a version that resolves this vulnerability.Fixed in 1.5.2-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/libzip-debugsourceto a version that resolves this vulnerability.Fixed in 1.5.2-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/libzip-develto a version that resolves this vulnerability.Fixed in 1.5.2-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/libzip-toolsto a version that resolves this vulnerability.Fixed in 1.5.2-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/libzip-tools-debuginfoto a version that resolves this vulnerability.Fixed in 1.5.2-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/php-bcmathto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-bcmath-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-clito a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-cli-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-commonto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-common-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-dbato a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-dba-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-dbgto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-dbg-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-debugsourceto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-develto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-embeddedto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-embedded-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-enchantto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-enchant-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-fpmto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-fpm-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-gdto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-gd-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-gmpto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-gmp-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-intlto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-intl-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-jsonto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-json-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-ldapto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-ldap-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-mbstringto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-mbstring-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-mysqlndto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-mysqlnd-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-odbcto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-odbc-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-opcacheto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-opcache-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-pdoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-pdo-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-pecl-apcu-debuginfoto a version that resolves this vulnerability.Fixed in 5.1.17-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/php-pecl-apcu-debugsourceto a version that resolves this vulnerability.Fixed in 5.1.17-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/php-pecl-apcu-develto a version that resolves this vulnerability.Fixed in 5.1.17-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/php-pecl-zip-debuginfoto a version that resolves this vulnerability.Fixed in 1.15.4-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/php-pecl-zip-debugsourceto a version that resolves this vulnerability.Fixed in 1.15.4-1.module+el8.1.0+3189+a1bff096 - Upgrade
Upgrade
redhat/php-pgsqlto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-pgsql-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-processto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-process-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-recodeto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-recode-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-snmpto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-snmp-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-soapto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-soap-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-xmlto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-xml-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-xmlrpcto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/php-xmlrpc-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6 - Upgrade
Upgrade
redhat/libzipto a version that resolves this vulnerability.Fixed in 1.5.2-1.module+el8.1.0+3189+a1bff096.aa - Upgrade
Upgrade
redhat/libzip-debuginfoto a version that resolves this vulnerability.Fixed in 1.5.2-1.module+el8.1.0+3189+a1bff096.aa - Upgrade
Upgrade
redhat/libzip-debugsourceto a version that resolves this vulnerability.Fixed in 1.5.2-1.module+el8.1.0+3189+a1bff096.aa - Upgrade
Upgrade
redhat/libzip-develto a version that resolves this vulnerability.Fixed in 1.5.2-1.module+el8.1.0+3189+a1bff096.aa - Upgrade
Upgrade
redhat/libzip-toolsto a version that resolves this vulnerability.Fixed in 1.5.2-1.module+el8.1.0+3189+a1bff096.aa - Upgrade
Upgrade
redhat/libzip-tools-debuginfoto a version that resolves this vulnerability.Fixed in 1.5.2-1.module+el8.1.0+3189+a1bff096.aa - Upgrade
Upgrade
redhat/phpto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-bcmathto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-bcmath-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-clito a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-cli-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-commonto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-common-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-dbato a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-dba-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-dbgto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-dbg-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-debugsourceto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-develto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-embeddedto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-embedded-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-enchantto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-enchant-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-fpmto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-fpm-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-gdto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-gd-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-gmpto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-gmp-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-intlto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-intl-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-jsonto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-json-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-ldapto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-ldap-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-mbstringto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-mbstring-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-mysqlndto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-mysqlnd-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-odbcto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-odbc-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-opcacheto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-opcache-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-pdoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-pdo-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-pecl-apcuto a version that resolves this vulnerability.Fixed in 5.1.17-1.module+el8.1.0+3189+a1bff096.aa - Upgrade
Upgrade
redhat/php-pecl-apcu-debuginfoto a version that resolves this vulnerability.Fixed in 5.1.17-1.module+el8.1.0+3189+a1bff096.aa - Upgrade
Upgrade
redhat/php-pecl-apcu-debugsourceto a version that resolves this vulnerability.Fixed in 5.1.17-1.module+el8.1.0+3189+a1bff096.aa - Upgrade
Upgrade
redhat/php-pecl-apcu-develto a version that resolves this vulnerability.Fixed in 5.1.17-1.module+el8.1.0+3189+a1bff096.aa - Upgrade
Upgrade
redhat/php-pecl-zipto a version that resolves this vulnerability.Fixed in 1.15.4-1.module+el8.1.0+3189+a1bff096.aa - Upgrade
Upgrade
redhat/php-pecl-zip-debuginfoto a version that resolves this vulnerability.Fixed in 1.15.4-1.module+el8.1.0+3189+a1bff096.aa - Upgrade
Upgrade
redhat/php-pecl-zip-debugsourceto a version that resolves this vulnerability.Fixed in 1.15.4-1.module+el8.1.0+3189+a1bff096.aa - Upgrade
Upgrade
redhat/php-pgsqlto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-pgsql-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-processto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-process-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-recodeto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-recode-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-snmpto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-snmp-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-soapto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-soap-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-xmlto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-xml-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-xmlrpcto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Upgrade
Upgrade
redhat/php-xmlrpc-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.5-5.module+el8.1.0+4560+e0eee7d6.aa - Compensating control
After installing the updated PHP packages, restart the httpd daemon so the update takes effect.
Event History
Frequently Asked Questions
What is the severity of RHSA-2019:3736?
The severity of RHSA-2019:3736 is classified as critical.
How do I fix RHSA-2019:3736?
To fix RHSA-2019:3736, update the affected packages to the versions specified in the advisory.
What are the affected packages for RHSA-2019:3736?
The affected packages include PHP, libzip, and their corresponding debuginfo and development versions.
What vulnerability is addressed in RHSA-2019:3736?
RHSA-2019:3736 addresses a vulnerability due to an underflow in env_path_info in fpm_main.c, identified as CVE-2019-11043.
How can I verify if my system is vulnerable to RHSA-2019:3736?
You can verify if your system is vulnerable by checking the installed versions of the affected packages against the advisory.