Mageia 2023-0248: php security update
Summary
Libxml - GHSA-3qrf-m4j2-pcrr (Security issue with external entity loading
in XML without enabling it). (CVE-2023-3823)
Phar - GHSA-jqcx-ccgc-xwhv (Buffer mismanagement in phar_dir_read())
(CVE-2023-3824)
References
- https://bugs.mageia.org/show_bug.cgi?id=32158
- https://www.php.net/ChangeLog-8.php#8.0.30
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3823
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3824
Resolution
MGASA-2023-0248 - Updated php packages fix security vulnerability
SRPMS
- 8/core/php-8.0.30-1.mga8