Release date:
2026-04-22 09:24:55 UTC
Description:
8.2.16.tuxcare.els4-r0:
- CVE-2024-5458 fix filter_var FILTER_VALIDATE_URL accepting invalid userinfo
- CVE-2024-8925 fix erroneous multipart/form-data boundary parsing
- CVE-2024-8927 fix CGI HTTP_REDIRECT_STATUS force-redirect bypass
- CVE-2024-9026 fix PHP-FPM log pollution via child worker output
- CVE-2024-11233 fix convert.quoted-printable-decode filter one-byte buffer overread
- CVE-2024-11234 fix stream HTTP request_fulluri CRLF injection / request smuggling
- CVE-2024-11236 fix pdo_dblib / pdo_firebird quoter integer overflow OOB writes
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.