AIX Open Source

 View Only
  • 1.  php security vulnerability fix

    Posted Mon September 13, 2021 10:09 AM
    php-7.4.22-1.aix6.1.ppc.rpm is now available on AIX Toolbox.

    This version of php has fix for the CVE-2021-21705  security vulnerability.

    You can use YUM/DNF to update to this version of package from the AIX Toolbox repository.

    ------------------------------
    SANGAMESH
    ------------------------------


  • 2.  RE: php security vulnerability fix

    Posted Fri October 29, 2021 04:22 PM
    hello

    looking for 7.4.25 now, as well as Apache updates. 

    would it be possible to release these packages no later than 2 weeks of the official versions or faster? 
    We appreciate the updates however with the current ~2 month lag  AIX cannot catch a break from being listed on security reports for missing patches.

    ------------------------------
    Vasiliy Gokoyev
    ------------------------------



  • 3.  RE: php security vulnerability fix

    Posted Mon November 01, 2021 03:20 AM
    Hi Vasiliy, 
    With the current processes we have it is not possible to deliver it within 2 weeks.
    We are continuously trying to improve the process and delivery of fixes.

    ------------------------------
    SANKET RATHI
    ------------------------------