{"id":"openSUSE-SU-2026:20745-1","summary":"Security update for php8","details":"This update for php8 fixes the following issues\n\n- CVE-2025-14179: improper handling of NULL bytes by the PDO Firebird driver when preparing SQL queries can lead to SQL\n  injection (bsc#1264778).\n- CVE-2026-6104: out-of-bounds read when processing an encoding name containing an embedded NULL byte in\n  `mb_convert_encoding()` can lead to information disclosure and denial of service (bsc#1264777).\n- CVE-2026-6722: use-after-free in SOAP using Apache map can lead to remote code execution (bsc#1264776).\n- CVE-2026-6735: improper validation of the request URI within the PHP-FPM status page can lead to XSS (bsc#1264775).\n- CVE-2026-7258: signed `char` values passed to `ctype` functions like `isxdigit` can lead to OOB access and denial of\n  service (bsc#1264774).\n- CVE-2026-7259: NULL pointer dereference in `php_mb_check_encoding()` via `mb_ereg_search_init()` can lead to a denial\n  of service (bsc#1264773).\n- CVE-2026-7261: use-after-free due to incorrectly handled persistence of handler objects when SOAP_PERSISTENCE_SESSION\n  is configured can lead to memory corruption, information disclosure and process crashes (bsc#1264772).\n- CVE-2026-7262: NULL pointer dereference caused by mistake in the SOAP decoding process when a typemap is configured\n  can lead to a denial of service (bsc#1264771).\n- CVE-2026-7263: incorrect processing of XML data in the `DOMNode: C14N()` method can lead to an infinite loop and a\n  denial of service (bsc#1264770).\n- CVE-2026-7568: integer overflow in the `metaphone` function can lead to undefined behavior and affect the availability\n  of the PHPprocess (bsc#1264769).\n\nOther updates:\n\n- Updated to 8.4.21.\n","modified":"2026-05-19T18:23:49.006768189Z","published":"2026-05-13T08:01:02Z","related":["CVE-2025-14179","CVE-2026-6104","CVE-2026-6722","CVE-2026-6735","CVE-2026-7258","CVE-2026-7259","CVE-2026-7261","CVE-2026-7262","CVE-2026-7263","CVE-2026-7568"],"upstream":["CVE-2025-14179","CVE-2026-6104","CVE-2026-6722","CVE-2026-6735","CVE-2026-7258","CVE-2026-7259","CVE-2026-7261","CVE-2026-7262","CVE-2026-7263","CVE-2026-7568"],"references":[{"type":"ADVISORY"},{"type":"REPORT","url":"https://bugzilla.suse.com/1264769"},{"type":"REPORT","url":"https://bugzilla.suse.com/1264770"},{"type":"REPORT","url":"https://bugzilla.suse.com/1264771"},{"type":"REPORT","url":"https://bugzilla.suse.com/1264772"},{"type":"REPORT","url":"https://bugzilla.suse.com/1264773"},{"type":"REPORT","url":"https://bugzilla.suse.com/1264774"},{"type":"REPORT","url":"https://bugzilla.suse.com/1264775"},{"type":"REPORT","url":"https://bugzilla.suse.com/1264776"},{"type":"REPORT","url":"https://bugzilla.suse.com/1264777"},{"type":"REPORT","url":"https://bugzilla.suse.com/1264778"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-14179"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6104"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6722"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6735"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-7258"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-7259"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-7261"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-7262"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-7263"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-7568"}],"schema_version":"1.7.5"}