RHSA-2026:48197: Low: php:8.3 security, bug fix, and enhancement update
Low: php:8.3 security, bug fix, and enhancement update
Other sources
PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server.Security Fix(es): php: PHP OpenSSL extension: Denial of Service due to buffer allocation flaw in AES-WRAP-PAD (CVE-2026-14355) Bug Fix(es) and Enhancement(s): Rebase PHP to 8.3.32 for CVE-2026-14355 CVE-2026-12184 in 9.8.z (JIRA:RHEL-192620) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/phpto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-pecl-apcuto a version that resolves this vulnerability.Fixed in 5.1.23-1.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pecl-redis6to a version that resolves this vulnerability.Fixed in 6.1.0-3.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pecl-rrdto a version that resolves this vulnerability.Fixed in 2.0.3-4.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pecl-xdebug3to a version that resolves this vulnerability.Fixed in 3.3.1-1.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pecl-zipto a version that resolves this vulnerability.Fixed in 1.22.3-1.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/apcu-panelto a version that resolves this vulnerability.Fixed in 5.1.23-1.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-bcmathto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-bcmath-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-clito a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-cli-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-commonto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-common-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-dbato a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-dba-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-dbgto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-dbg-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-debugsourceto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-develto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-embeddedto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-embedded-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-enchantto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-enchant-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-ffito a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-ffi-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-fpmto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-fpm-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-gdto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-gd-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-gmpto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-gmp-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-intlto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-intl-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-ldapto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-ldap-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-mbstringto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-mbstring-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-mysqlndto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-mysqlnd-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-odbcto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-odbc-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-opcacheto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-opcache-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-pdoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-pdo-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-pecl-apcu-debuginfoto a version that resolves this vulnerability.Fixed in 5.1.23-1.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pecl-apcu-debugsourceto a version that resolves this vulnerability.Fixed in 5.1.23-1.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pecl-apcu-develto a version that resolves this vulnerability.Fixed in 5.1.23-1.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pecl-redis6-debuginfoto a version that resolves this vulnerability.Fixed in 6.1.0-3.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pecl-redis6-debugsourceto a version that resolves this vulnerability.Fixed in 6.1.0-3.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pecl-rrd-debuginfoto a version that resolves this vulnerability.Fixed in 2.0.3-4.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pecl-rrd-debugsourceto a version that resolves this vulnerability.Fixed in 2.0.3-4.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pecl-xdebug3-debuginfoto a version that resolves this vulnerability.Fixed in 3.3.1-1.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pecl-xdebug3-debugsourceto a version that resolves this vulnerability.Fixed in 3.3.1-1.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pecl-zip-debuginfoto a version that resolves this vulnerability.Fixed in 1.22.3-1.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pecl-zip-debugsourceto a version that resolves this vulnerability.Fixed in 1.22.3-1.module+el9.8.0+24343+756b4fcd - Upgrade
Upgrade
redhat/php-pgsqlto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-pgsql-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-processto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-process-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-snmpto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-snmp-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-soapto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-soap-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-xmlto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/php-xml-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a - Upgrade
Upgrade
redhat/phpto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-bcmathto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-bcmath-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-clito a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-cli-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-commonto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-common-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-dbato a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-dba-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-dbgto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-dbg-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-debugsourceto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-develto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-embeddedto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-embedded-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-enchantto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-enchant-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-ffito a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-ffi-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-fpmto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-fpm-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-gdto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-gd-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-gmpto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-gmp-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-intlto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-intl-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-ldapto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-ldap-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-mbstringto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-mbstring-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-mysqlndto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-mysqlnd-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-odbcto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-odbc-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-opcacheto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-opcache-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-pdoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-pdo-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-pecl-apcuto a version that resolves this vulnerability.Fixed in 5.1.23-1.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-apcu-debuginfoto a version that resolves this vulnerability.Fixed in 5.1.23-1.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-apcu-debugsourceto a version that resolves this vulnerability.Fixed in 5.1.23-1.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-apcu-develto a version that resolves this vulnerability.Fixed in 5.1.23-1.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-redis6to a version that resolves this vulnerability.Fixed in 6.1.0-3.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-redis6-debuginfoto a version that resolves this vulnerability.Fixed in 6.1.0-3.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-redis6-debugsourceto a version that resolves this vulnerability.Fixed in 6.1.0-3.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-rrdto a version that resolves this vulnerability.Fixed in 2.0.3-4.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-rrd-debuginfoto a version that resolves this vulnerability.Fixed in 2.0.3-4.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-rrd-debugsourceto a version that resolves this vulnerability.Fixed in 2.0.3-4.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-xdebug3to a version that resolves this vulnerability.Fixed in 3.3.1-1.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-xdebug3-debuginfoto a version that resolves this vulnerability.Fixed in 3.3.1-1.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-xdebug3-debugsourceto a version that resolves this vulnerability.Fixed in 3.3.1-1.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-zipto a version that resolves this vulnerability.Fixed in 1.22.3-1.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-zip-debuginfoto a version that resolves this vulnerability.Fixed in 1.22.3-1.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pecl-zip-debugsourceto a version that resolves this vulnerability.Fixed in 1.22.3-1.module+el9.8.0+24343+756b4fcd.aa - Upgrade
Upgrade
redhat/php-pgsqlto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-pgsql-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-processto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-process-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-snmpto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-snmp-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-soapto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-soap-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-xmlto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
redhat/php-xml-debuginfoto a version that resolves this vulnerability.Fixed in 8.3.32-1.module+el9.8.0+24508+6fcf2e7a.aa - Upgrade
Upgrade
phpto a version that resolves this vulnerability.Fixed in 8.3.32 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch JIRA:RHEL-192620
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:48197?
The severity of RHSA-2026:48197 is classified as low.
How do I fix RHSA-2026:48197?
To fix RHSA-2026:48197, you should update to the latest PHP version as provided in the advisory.
What vulnerabilities are addressed in RHSA-2026:48197?
RHSA-2026:48197 addresses a denial of service vulnerability caused by a buffer allocation flaw in the PHP OpenSSL extension.
What software is affected by RHSA-2026:48197?
The affected software includes various PHP packages such as redhat/php, redhat/php-pecl-apcu, and redhat/php-pecl-redis6.
When was RHSA-2026:48197 published?
RHSA-2026:48197 was published on July 29, 2026.