Skip to navigation

Security Advisory Critical: php security update

Advisory: RHSA-2013:1814-1
Type: Security Advisory
Severity: Critical
Issued on: 2013-12-11
Last updated on: 2013-12-11
Affected Products: RHEL Desktop Workstation (v. 5 client)
Red Hat Enterprise Linux (v. 5 server)
CVEs (cve.mitre.org): CVE-2011-1398
CVE-2012-2688
CVE-2013-1643
CVE-2013-6420

Details

Updated php packages that fix multiple security issues are now available
for Red Hat Enterprise Linux 5.

The Red Hat Security Response Team has rated this update as having critical
security impact. Common Vulnerability Scoring System (CVSS) base scores,
which give detailed severity ratings, are available for each vulnerability
from the CVE links in the References section.

PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Server.

A memory corruption flaw was found in the way the openssl_x509_parse()
function of the PHP openssl extension parsed X.509 certificates. A remote
attacker could use this flaw to provide a malicious self-signed certificate
or a certificate signed by a trusted authority to a PHP application using
the aforementioned function, causing the application to crash or, possibly,
allow the attacker to execute arbitrary code with the privileges of the
user running the PHP interpreter. (CVE-2013-6420)

It was found that PHP did not check for carriage returns in HTTP headers,
allowing intended HTTP response splitting protections to be bypassed.
Depending on the web browser the victim is using, a remote attacker could
use this flaw to perform HTTP response splitting attacks. (CVE-2011-1398)

An integer signedness issue, leading to a heap-based buffer underflow, was
found in the PHP scandir() function. If a remote attacker could upload an
excessively large number of files to a directory the scandir() function
runs on, it could cause the PHP interpreter to crash or, possibly, execute
arbitrary code. (CVE-2012-2688)

It was found that the PHP SOAP parser allowed the expansion of external XML
entities during SOAP message parsing. A remote attacker could possibly use
this flaw to read arbitrary files that are accessible to a PHP application
using a SOAP extension. (CVE-2013-1643)

Red Hat would like to thank the PHP project for reporting CVE-2013-6420.
Upstream acknowledges Stefan Esser as the original reporter.

All php users are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. After installing the
updated packages, the httpd daemon must be restarted for the update to
take effect.


Solution

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

This update is available via the Red Hat Network. Details on how to
use the Red Hat Network to apply this update are available at
https://access.redhat.com/site/articles/11258

Updated packages

RHEL Desktop Workstation (v. 5 client)

SRPMS:
php-5.1.6-43.el5_10.src.rpm
File outdated by:  RHSA-2014:0311
    MD5: 2304879bf171753bca1fd80a48e503cc
SHA-256: a0c542e39106b94bd36fa6d11a577cc25e79336af1645be9e361bdc547da2dc7
 
IA-32:
php-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 412896f0cb5818b461e00e244eb2caeb
SHA-256: b37a84a264e3b04cc7fc16892f8a0478d3f16f7f931da68b947c6214da980df5
php-bcmath-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 263d73b60468f690a48e21db6e7707ad
SHA-256: 5bedabb42ab13fac23cfa001edb858a8a7197a6a6c7410600f75e65f41021abd
php-cli-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: eb1aecc39be5dd0f2ecb187c2ed82f15
SHA-256: 6f6f77eca01a00844f9efde7fe71ad8d18e51d4abcdab1e1492b8b3165937095
php-common-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 48904b4ed6442fbe03b4893804354e03
SHA-256: 60919e03eb9c5dd50598ea991039e722c6bf53ec7c21502bded49e6ee8dd8221
php-dba-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 0abd5f59a1e823b9e58a69f7624a290c
SHA-256: 0cb4290ffc40ae14c006c9f3adcc4a6877a47e0936c8eea0379b303f141a3da8
php-debuginfo-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: c9ec7ee26ed7c1ec2c7a5159e2842b0d
SHA-256: d296bf749979ddc9344dee5b09cb796e20ee0e93aacee11cd72fcecc48f11b6c
php-devel-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 0c8e6e721c3eab74fdeb0e8bdc060788
SHA-256: e427c6cb7284ceb5c0209a68d3f659def7a9c7bae1ee001adfebf57405a4810e
php-gd-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: c4d0a0194feced28dfbbaa24ec77d1d1
SHA-256: ecc0ad4fe62335dddef793f859caecaea9ea685de22c65c7e00f8ca51fff6615
php-imap-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 78d15ff39b91e8d6476502852db06ad2
SHA-256: 461a470326b020f554dfb85c82cbe7b1e34e5e91f5784fc258645a94976ede21
php-ldap-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: d8e09a2fbb195ccc2be689974fe98eea
SHA-256: b650af6e33b9cc5d87e2b0e5070d2cf84919af71eaebb05b888fc2dad935b43b
php-mbstring-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 30b405a222ee8488f09aa88dc086beef
SHA-256: f3f7a15dca912d53a9562c57885256fe1480f0b41e22a932b9cd59ecc0b26eea
php-mysql-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 62e43476ec82f9d338eea0b4db9ecb6c
SHA-256: 58763510c2508bf9cc488d95779c8e35b1b37ae1d7af42da9d2d6f765691a49a
php-ncurses-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 321937ed89a06265756e7b9b4b4b210a
SHA-256: 3cb3632f5c37906bf4d5fe98828fcdd51c1f4fbf5b95708af25cc935d834e37e
php-odbc-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: f314707efd37c5c1ae62d5c7a6666b52
SHA-256: a24b72a0bd470685fce5b96a2048affc2ea644e41bdf3d4ad279a6ba0d807101
php-pdo-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 145d2f4edd9507d3a242e6c240a37bd6
SHA-256: a9226286697ad833aaf4dad85bd7d1086dce49a69b5655cb278f45d7388f8933
php-pgsql-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 682e2e600b014d03e2fee737b8ca5e42
SHA-256: 7eaced56efb3ef4c1f905030b4f5182eb57bef2b278d4328ef8e2ee4212bf32b
php-snmp-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 40769875be883d7bd9f77b1fd7138c20
SHA-256: 538c97c710b8af8d10cb673aec21893d61a3c456a947ca1d0cd46b1de0b806cd
php-soap-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: ae93219fc1e5ee6de856855f3e463fab
SHA-256: fd478dc2d400b7b69663fb8bc0611f6d62d12832d1cb038e00f2dd6c67d0a76d
php-xml-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 309922efd146eb60914fd853fe6b2ecc
SHA-256: 1525b7d93496e3629a77baae7b2190665c1539ae3972b10ea48e5dfa5fc07087
php-xmlrpc-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 5b22b69961b9ed36f46f697533b08655
SHA-256: 9de1f03dcd86018e7ec170dff6e5fda6394f22ad44f31d71b0539267736c7fec
 
x86_64:
php-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 0e9ec71a1ac229aa53bc71964de88f2d
SHA-256: aa898c86eded10bbb3dc5ce1144f42c5bf028c0e2676cb2492d6df1e60c18013
php-bcmath-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 92d5ef6b29cf62ea33bbe52c686e2b03
SHA-256: afdeefec0224e1c063d0aeae20c84e9b933c6f441ec0f7cd9d283ed4952be34f
php-cli-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: efa761dc38547982189db90a28c20454
SHA-256: 3e906e62bbc9d6bc1bc472b4e0c1999de121c2b5dd320b630678db1b76172cad
php-common-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 627dc394b35ce6d633c6dc355a82d478
SHA-256: cdb889ac5a50b585e192840f45bb51ebe2d5845cd9aec239ca2b7cd2eb184bc5
php-dba-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 9973288068885f3d5f49e074cc9a3991
SHA-256: a69d29bef70d09851db81a4725baebb63fbbb1761f2dc871c801554d75a77162
php-debuginfo-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: b1fdde31c82377369a429a27c61f0d10
SHA-256: 16ebed73d8591476467083997ac18092264d6278b213926cf4d01d83a6cde7d4
php-devel-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 606f96ff3979f3c874def7e774d8f834
SHA-256: 32754edf045400168398ab9389088ed92194bbe5b6d8a183974b5e9621bfb214
php-gd-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 008a6b0de9f8ae5e40ce10f23580e829
SHA-256: dc3669ad8200f34e304b2b1b63adb6d2a421a04dd57d4db9bdfe9042ee288159
php-imap-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: f4ecf902861507b4fb345bef3bc37c04
SHA-256: 2d0527502eb59c77b275e5772b539aec1a0d644e7fa1fe43a372661afd000539
php-ldap-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 58feb4edca8307e853612a8a7e9f2d4a
SHA-256: f313437979d6f6478341c2fcf1d5439609d3012f43cb655474171bf0229d1a2e
php-mbstring-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: d1bfcd966ac83c9d77022cf0213c6d18
SHA-256: 624676f5280b59e149374cad2c0621b1e478d2fe2e119958ba5ca7db38a066ec
php-mysql-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 277e11e2ae4f8aeb7189cac945101602
SHA-256: 8e0882a68ae825262dbd6b889eb52748130735637803bbf127a31841c65c07ef
php-ncurses-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 284665950bd77a33e8df3a547841bd14
SHA-256: 8658d0e30e3292d81231e5dc4f2eb7dd82fb740767a9d713a57c993d670ab77f
php-odbc-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 8de60fa716a5550a58280df6ef091c01
SHA-256: 15a59e65148e47fa292da8d5187b50376ba15beb5e52c4414ba683b601cedec0
php-pdo-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: fc2567820dd0b8a26c83b956177e78d9
SHA-256: 574286b21a6b2bb5279a299e5cb1d7acfbc38f4a9e324d65a26ecbe9f86dc4d4
php-pgsql-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 208c76779bae9b983d1410c2e47cf4ab
SHA-256: 999b5ef66a1fa5ea55ff1fd29eff1e8d8b01e3f7556e55078641c22103d64cb1
php-snmp-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: bc7c52a2678ffe28b14a9515a7c1ad02
SHA-256: e34767da46ecd40fe34c5e71afd3967d963b29ec041229568527373b9e2e94bd
php-soap-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 32980206d68ab12372516e21605f0db3
SHA-256: 688ec10661740ec630456031ea923c01be097f274d698e476080cc6459c3ca24
php-xml-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: affa3b3f6e3ed67eadd2f56231b49b39
SHA-256: 77878f0348ade3b3c0a175c53e6ddf9b61475a82fe736390f0b45aca8b053e72
php-xmlrpc-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 83b6945a843922804c347f5ae5e81bbb
SHA-256: 9dcc22365e9325462401e7866ef79ae7c0b37d3bd67499920551b8873f19b9c3
 
Red Hat Enterprise Linux (v. 5 server)

SRPMS:
php-5.1.6-43.el5_10.src.rpm
File outdated by:  RHSA-2014:0311
    MD5: 2304879bf171753bca1fd80a48e503cc
SHA-256: a0c542e39106b94bd36fa6d11a577cc25e79336af1645be9e361bdc547da2dc7
 
IA-32:
php-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 412896f0cb5818b461e00e244eb2caeb
SHA-256: b37a84a264e3b04cc7fc16892f8a0478d3f16f7f931da68b947c6214da980df5
php-bcmath-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 263d73b60468f690a48e21db6e7707ad
SHA-256: 5bedabb42ab13fac23cfa001edb858a8a7197a6a6c7410600f75e65f41021abd
php-cli-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: eb1aecc39be5dd0f2ecb187c2ed82f15
SHA-256: 6f6f77eca01a00844f9efde7fe71ad8d18e51d4abcdab1e1492b8b3165937095
php-common-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 48904b4ed6442fbe03b4893804354e03
SHA-256: 60919e03eb9c5dd50598ea991039e722c6bf53ec7c21502bded49e6ee8dd8221
php-dba-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 0abd5f59a1e823b9e58a69f7624a290c
SHA-256: 0cb4290ffc40ae14c006c9f3adcc4a6877a47e0936c8eea0379b303f141a3da8
php-debuginfo-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: c9ec7ee26ed7c1ec2c7a5159e2842b0d
SHA-256: d296bf749979ddc9344dee5b09cb796e20ee0e93aacee11cd72fcecc48f11b6c
php-devel-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 0c8e6e721c3eab74fdeb0e8bdc060788
SHA-256: e427c6cb7284ceb5c0209a68d3f659def7a9c7bae1ee001adfebf57405a4810e
php-gd-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: c4d0a0194feced28dfbbaa24ec77d1d1
SHA-256: ecc0ad4fe62335dddef793f859caecaea9ea685de22c65c7e00f8ca51fff6615
php-imap-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 78d15ff39b91e8d6476502852db06ad2
SHA-256: 461a470326b020f554dfb85c82cbe7b1e34e5e91f5784fc258645a94976ede21
php-ldap-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: d8e09a2fbb195ccc2be689974fe98eea
SHA-256: b650af6e33b9cc5d87e2b0e5070d2cf84919af71eaebb05b888fc2dad935b43b
php-mbstring-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 30b405a222ee8488f09aa88dc086beef
SHA-256: f3f7a15dca912d53a9562c57885256fe1480f0b41e22a932b9cd59ecc0b26eea
php-mysql-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 62e43476ec82f9d338eea0b4db9ecb6c
SHA-256: 58763510c2508bf9cc488d95779c8e35b1b37ae1d7af42da9d2d6f765691a49a
php-ncurses-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 321937ed89a06265756e7b9b4b4b210a
SHA-256: 3cb3632f5c37906bf4d5fe98828fcdd51c1f4fbf5b95708af25cc935d834e37e
php-odbc-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: f314707efd37c5c1ae62d5c7a6666b52
SHA-256: a24b72a0bd470685fce5b96a2048affc2ea644e41bdf3d4ad279a6ba0d807101
php-pdo-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 145d2f4edd9507d3a242e6c240a37bd6
SHA-256: a9226286697ad833aaf4dad85bd7d1086dce49a69b5655cb278f45d7388f8933
php-pgsql-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 682e2e600b014d03e2fee737b8ca5e42
SHA-256: 7eaced56efb3ef4c1f905030b4f5182eb57bef2b278d4328ef8e2ee4212bf32b
php-snmp-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 40769875be883d7bd9f77b1fd7138c20
SHA-256: 538c97c710b8af8d10cb673aec21893d61a3c456a947ca1d0cd46b1de0b806cd
php-soap-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: ae93219fc1e5ee6de856855f3e463fab
SHA-256: fd478dc2d400b7b69663fb8bc0611f6d62d12832d1cb038e00f2dd6c67d0a76d
php-xml-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 309922efd146eb60914fd853fe6b2ecc
SHA-256: 1525b7d93496e3629a77baae7b2190665c1539ae3972b10ea48e5dfa5fc07087
php-xmlrpc-5.1.6-43.el5_10.i386.rpm
File outdated by:  RHSA-2014:0311
    MD5: 5b22b69961b9ed36f46f697533b08655
SHA-256: 9de1f03dcd86018e7ec170dff6e5fda6394f22ad44f31d71b0539267736c7fec
 
IA-64:
php-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: c4992642c626c703bd679e2a6b898ce2
SHA-256: 5415b68d979770139ec404fd160c3a8abcff477f33fb27061f84795aed7914fd
php-bcmath-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 14141dc826bff55040ff229c221f631e
SHA-256: 4c1015163278186743965dab28550e322dcb53f654612ae16cd73d84dacb0a57
php-cli-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 92e886496693b117d9c4b4e63a0685ff
SHA-256: 581d911516ae950ed4abc6d2275cfca7991a862c3422afcf92ffe0f8d1ae5276
php-common-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 8acad5dd4258194d8584194f9ccc90c2
SHA-256: 95f72d7df7e1721e6efdc41de9fe8fd95d827100e2db56ae55ff5c29935f7dc1
php-dba-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 26889215edc2b119ef42b5c1be4c7a53
SHA-256: f3ee1bf02a353878b20d4ecaa7b0e64ddc54020808e0b644e0bec387fc95c792
php-debuginfo-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: b517dc6628568df4b3ea04450ea2f80f
SHA-256: 9e9ec83f634e616f505eea5f16c42a0b830373de6f98b85ab070ba95cb25b8f6
php-devel-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 42978f474fe98cb609677dbda851237f
SHA-256: 73d109473d8eb277c9d8f373cbedf57388096ea21f60d3c23395695b70ae7cc2
php-gd-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 54c803b423d0b50c01102ccb1145b9c6
SHA-256: f65cdf0a4c1f4df5810f2472c17d6feafa4d556eaae8e8127d1a6827ace02d95
php-imap-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: fca9a045800bee1603d606de8ce806a6
SHA-256: 28a65c5372391b21b29e4739445d8b60daca965982938b0bdb71932da7a342cd
php-ldap-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: db73bbd58b14acb9685d9667a33fa7ed
SHA-256: 2697e523449b42ba0bd5de37760b011170b1d7ac745686fd190dc6d317b2415f
php-mbstring-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 7a75a2a1d3a97a538bfa07230cc12610
SHA-256: 34ae73da65a8f42f8eb9e88e8548649a80df6a4ad22ead8ba4769b1916759426
php-mysql-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 4838b7fdabfeee20e03836e374a2d782
SHA-256: d4b5cbd2e8631586bc14da59bc3af06cd5fe0e6d85d195686cb37642ff532176
php-ncurses-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 154a4b633c1cdfef6b04d89bdc2fd902
SHA-256: 974a4a49a725978cd4303debaeb9b3bf4b891d6563baeef79aff75f2078bc0ba
php-odbc-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: a43dc0df1bba674e98fbaf2736dfbe68
SHA-256: cf989a5bad89fffc7ccfea32bb75fbd13d8ad36f4e478e3ff265599fe93f11d1
php-pdo-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 7b7f70160bb6e131ab9c7c242e712975
SHA-256: 8045a4fde43855f6501f0acdd8166b9111bf6df12a0761a58f38e3bd34c98e92
php-pgsql-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 0d92c9f045b40746ef7a965ca204f7ba
SHA-256: c25261664fdbf887acfed111e72e6c3cf6afc65a89577993b35f42b5f4bbf91f
php-snmp-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: ecb5b5f3d176669d74c477fa0acb0fd1
SHA-256: 7c5730efcc56e5de57dd7804b51896e277c9c61abfa75f065ab47b937e62f656
php-soap-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: b6de102c930cbd589a82dc4cba36c3d6
SHA-256: d09c2597a902d8a5215e0d02c1ab6b988733127c180f3d723afee8f60dffe086
php-xml-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 8a690f9a56eabdbc93ee7436e369cd7d
SHA-256: d42bbb02676177a8550c0c8109f2d39b03c6757396a89d9376af17df3c839040
php-xmlrpc-5.1.6-43.el5_10.ia64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 05661371388950fe875bdb72f623ea78
SHA-256: 83bef2683031bd7ba4bd6143ecc8427fb922e8326f0f0cbff4584d6066b3b8d1
 
PPC:
php-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: 175dbadd72598e9c40cd046c41066ac9
SHA-256: 9f33a178fcf0c62f1b11d4a57486038f763fc2db8afc933098656b2368495c84
php-bcmath-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: b7d90ca674f81f7a2442adc59f970217
SHA-256: 5d6d94d335ca94d1f6e5868811d1e092eb9c4c04ba97d8fc94f78294f9afc180
php-cli-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: bdebaa0548a7e080e65341290de3d666
SHA-256: e90362c2e9b8e7fb5954d493504849952e3a525dfb77cfbb9ee581ffe726a804
php-common-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: 261ee8b70a024a73e2b12922be62e090
SHA-256: f83cafd115c5f488f2dc410ffea5af338eb83ff35925d3e2a990ac4b2e5c0fc1
php-dba-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: c79abfa24bbf61433d2e6a958d57857e
SHA-256: a57b70aa8ff12b035246403435ffda4d2c62f2f748eae999abc9d8323ef321a1
php-debuginfo-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: a8f62bda7299773a150dab54f1d0736f
SHA-256: 085c90bcf19c8073c2deef5f932cd0c4d95f6128f74d16ff2321cf93c16504d5
php-devel-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: e7b12db0ff406a5b7a7511b53a7d4c7e
SHA-256: 625f55b162c9f38a7f8ff5b1ee2b68632a3ea68b45e4edb5a05c0fd25d1d4982
php-gd-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: 58441499008b7782c87a76f96f4a9961
SHA-256: a560dbea9460b44c79607a86b3f3f0e49ac1fc576f6c0f2b28b43672fe61c3c0
php-imap-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: 532b198951038dd199e93cfcc9c5d01a
SHA-256: 3b5f08ce14e98d35fab389ae75fb2fc9c1e40845a43bbc6fc9e314e381d09619
php-ldap-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: d6a43eaf2eb7d8e08554139ece79383a
SHA-256: b74233149b00e2472d45d6d5b9e4212114f76775c4ef5b08929a1f2c5dec40f5
php-mbstring-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: 46cd46ce44109fe7e567eab90b9a1a38
SHA-256: 395053878ddf42a6e820a4a13995912ef3fcc7ae7e51ba7df3d830ba5aecb94b
php-mysql-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: c1314aa774bc989d99f6fda6973207b4
SHA-256: 386fea522f95ed374eddb1d99efdec2aa2c124c5359002aa7537c81ef723e92f
php-ncurses-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: 4957f385de53294a79088cc01f533f02
SHA-256: b02effc2f408bb72bae8471750d2bd1500b28469f243458fcd747974e344c91d
php-odbc-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: ccac01ab5014c0b992c0d510d91c22c6
SHA-256: b41b1929cbb54b84bdd998823536f0be666a958bc8cb670764c1a8789ff40f84
php-pdo-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: 7a02a26adb4160dea8c3ea6d5709b394
SHA-256: 52c84f6fdf46cd4b3e047a4718d209597e9dbe6a2f55733836868488546a91e4
php-pgsql-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: 06c7c75bc37d5185b1972f93184fab87
SHA-256: cd28b4661c75b838241902baec34072fc72537c905e39d9e1f7f7645b99ae222
php-snmp-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: 36e4426da6671886415da5629a92cb66
SHA-256: c98cca778ad7fc35ab171365bfdcc518c9028a45ae5b882135f7aadb5ffdb36b
php-soap-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: c80033329355ffbb1f4035b858de9d01
SHA-256: 10191f08655b0efe2ba80c1534f5b51cd39950dc96a6ab2bf0b3ba8e9e810b04
php-xml-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: b5502a9a8bd92c89e6571cbfef8f9b7d
SHA-256: 3d396c56380fa55c62b20ccc79955630525cbe6988e21f8dac131879406de38a
php-xmlrpc-5.1.6-43.el5_10.ppc.rpm
File outdated by:  RHSA-2014:0311
    MD5: 09874a48059d771ff745322a6dabb887
SHA-256: a12f0fdbc88a9f5149a7bf3f4474b3e24a7bb36507faf96915913385e1e38679
 
s390x:
php-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: a29c02b060675ec7c9ac88ec28bdf413
SHA-256: 5bc81e418d4d64b080de63cf1ebb08cc98132f1e0e8552c0726a1c275345aa0e
php-bcmath-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: eafa2f350ab272eaac1b405c381924ca
SHA-256: 88d8dde47bdecc7aaa9fbed92378adea1a2a502a464b88af556db128fc4ce3a7
php-cli-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: e8647a45bad89c3b944e2543bc67f0ee
SHA-256: 45c72410b6b31b8dd4574fc0f875c6730cc9168e7e4f503969efa918dda1002f
php-common-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: 61e13f5a820476b90c0430c42364a38e
SHA-256: aa02337b4b1a0b2cfcf158194d6ef3116300eea94a0b673734e7eeec4492c788
php-dba-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: 9239c6c9f3914a10993c2612a9d91149
SHA-256: 57040d8ed897f42fcf14b0f381171915f65c5a4af77b6b765f4a14b7afb7b679
php-debuginfo-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: a4de4826a241f086e88efa5512466a5b
SHA-256: 6d2c30cc4eb06b39428ed61dcc5d96cc4815d1b6c450f13fc22a308cecb48fde
php-devel-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: 93a7080b7e9d65faa69eec5dbd5c3201
SHA-256: 4aa56475691b223ea3ec203a6a18924fd411faf4b56774f3f1a5977339bf27c3
php-gd-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: 572b2531da8163f938878119d3c8c833
SHA-256: 542e6c666db5c536d73db9d183371317bb9599885f8ca8fb433445c555ac1f2a
php-imap-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: ef48e78574d1a703155f63f559b40381
SHA-256: 348dfa3e2a17777e5c54e3e1450e493f45d0225d35ee611a092c9ed5a2027438
php-ldap-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: 66e88eac2fc431092f70276f2f2b622f
SHA-256: 4d2c358601d6c7d6691e6a35512b8bc829d4f1462fd68e30619e2a2f4285ab8b
php-mbstring-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: 33ecb587894a1a62a177a5737098289c
SHA-256: 1c7ecaa5ea7a42a4d8e5e80ad96809a3c21ebf83175e60cf24d6a7ae2ed118b8
php-mysql-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: b1b28f1d9e1f5bb201fe3924329a8238
SHA-256: 2b5c37f210f7039b2c34675fe48bf002912061455da949202efcf7c03269a915
php-ncurses-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: fd08f2b422375ea1b424a96756c05e40
SHA-256: b1a494b4e6b929ff5f2ec8609406634b327a1de0c3e073f292d7ab11cf14ad3f
php-odbc-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: 273e3fd91c821056b23d7c23315154eb
SHA-256: 7c6f406f20e284ff6c224f1e42069d658b90842f904e60468ff844126fbeef3b
php-pdo-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: ca62e2ec203653be70d2d37122163b53
SHA-256: 7e8397418d5032f0040c3253f7bc2eb7972e1ab54c8d4e46f288c2f1ea4a233c
php-pgsql-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: fbcdfaada1ccf3c68088514644cf7f18
SHA-256: 6fcdc6b07fdbdbe2d25129f155892c05ca79bd9f09eb51af60495cbb1e9c227c
php-snmp-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: 3d6566e5144dfcd4896bf9d2e494918d
SHA-256: da2cc4092ec45573cfe1d7218de9d88ed8bfe13468fb5409fbb1be4b72570dac
php-soap-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: 7930f2ac39986d3320b7dacad07a34b1
SHA-256: 7c3568711d8d3ef767db2632bb67ce3258844e95090595ae508601d590c38874
php-xml-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: 2eef93b4f96243c88cc91a3cabe38e12
SHA-256: 3ed19e0f834590da2e8bf07b80251701cdcd18bc3a379a4451fc5f63ab299ce9
php-xmlrpc-5.1.6-43.el5_10.s390x.rpm
File outdated by:  RHSA-2014:0311
    MD5: b5a88bf1dec0bc2189dbd7579308f2da
SHA-256: 7b08b587aff0bf9eb2459a91583a20583b238598cb536abc6a376497c49a41d5
 
x86_64:
php-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 0e9ec71a1ac229aa53bc71964de88f2d
SHA-256: aa898c86eded10bbb3dc5ce1144f42c5bf028c0e2676cb2492d6df1e60c18013
php-bcmath-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 92d5ef6b29cf62ea33bbe52c686e2b03
SHA-256: afdeefec0224e1c063d0aeae20c84e9b933c6f441ec0f7cd9d283ed4952be34f
php-cli-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: efa761dc38547982189db90a28c20454
SHA-256: 3e906e62bbc9d6bc1bc472b4e0c1999de121c2b5dd320b630678db1b76172cad
php-common-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 627dc394b35ce6d633c6dc355a82d478
SHA-256: cdb889ac5a50b585e192840f45bb51ebe2d5845cd9aec239ca2b7cd2eb184bc5
php-dba-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 9973288068885f3d5f49e074cc9a3991
SHA-256: a69d29bef70d09851db81a4725baebb63fbbb1761f2dc871c801554d75a77162
php-debuginfo-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: b1fdde31c82377369a429a27c61f0d10
SHA-256: 16ebed73d8591476467083997ac18092264d6278b213926cf4d01d83a6cde7d4
php-devel-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 606f96ff3979f3c874def7e774d8f834
SHA-256: 32754edf045400168398ab9389088ed92194bbe5b6d8a183974b5e9621bfb214
php-gd-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 008a6b0de9f8ae5e40ce10f23580e829
SHA-256: dc3669ad8200f34e304b2b1b63adb6d2a421a04dd57d4db9bdfe9042ee288159
php-imap-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: f4ecf902861507b4fb345bef3bc37c04
SHA-256: 2d0527502eb59c77b275e5772b539aec1a0d644e7fa1fe43a372661afd000539
php-ldap-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 58feb4edca8307e853612a8a7e9f2d4a
SHA-256: f313437979d6f6478341c2fcf1d5439609d3012f43cb655474171bf0229d1a2e
php-mbstring-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: d1bfcd966ac83c9d77022cf0213c6d18
SHA-256: 624676f5280b59e149374cad2c0621b1e478d2fe2e119958ba5ca7db38a066ec
php-mysql-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 277e11e2ae4f8aeb7189cac945101602
SHA-256: 8e0882a68ae825262dbd6b889eb52748130735637803bbf127a31841c65c07ef
php-ncurses-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 284665950bd77a33e8df3a547841bd14
SHA-256: 8658d0e30e3292d81231e5dc4f2eb7dd82fb740767a9d713a57c993d670ab77f
php-odbc-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 8de60fa716a5550a58280df6ef091c01
SHA-256: 15a59e65148e47fa292da8d5187b50376ba15beb5e52c4414ba683b601cedec0
php-pdo-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: fc2567820dd0b8a26c83b956177e78d9
SHA-256: 574286b21a6b2bb5279a299e5cb1d7acfbc38f4a9e324d65a26ecbe9f86dc4d4
php-pgsql-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 208c76779bae9b983d1410c2e47cf4ab
SHA-256: 999b5ef66a1fa5ea55ff1fd29eff1e8d8b01e3f7556e55078641c22103d64cb1
php-snmp-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: bc7c52a2678ffe28b14a9515a7c1ad02
SHA-256: e34767da46ecd40fe34c5e71afd3967d963b29ec041229568527373b9e2e94bd
php-soap-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 32980206d68ab12372516e21605f0db3
SHA-256: 688ec10661740ec630456031ea923c01be097f274d698e476080cc6459c3ca24
php-xml-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: affa3b3f6e3ed67eadd2f56231b49b39
SHA-256: 77878f0348ade3b3c0a175c53e6ddf9b61475a82fe736390f0b45aca8b053e72
php-xmlrpc-5.1.6-43.el5_10.x86_64.rpm
File outdated by:  RHSA-2014:0311
    MD5: 83b6945a843922804c347f5ae5e81bbb
SHA-256: 9dcc22365e9325462401e7866ef79ae7c0b37d3bd67499920551b8873f19b9c3
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

1036830 - CVE-2013-6420 php: memory corruption in openssl_x509_parse()
828051 - CVE-2012-2688 php: Integer Signedness issues in _php_stream_scandir
853329 - CVE-2011-1398 PHP: sapi_header_op() %0D sequence handling security bypass
918187 - CVE-2013-1643 php: Ability to read arbitrary files due use of external entities while parsing SOAP WSDL files


References



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/