PHP: Multiple vulnerabilities Multiple vulnerabilities have been found in PHP, the worst of which could result in a Denial of Service condition. php 2018-12-02 2018-12-03 658092 666256 local, remote 5.6.38 7.0.32 7.1.22 7.2.10 5.6.38 7.0.32 7.1.22 7.2.10

PHP is an open source general-purpose scripting language that is especially suited for web development.

Multiple vulnerabilities have been discovered in PHP. Please review the referenced CVE identifiers for details.

An attacker could cause a Denial of Service condition or obtain sensitive information.

There is no known workaround at this time.

All PHP 5.6.X users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=dev-lang/php-5.6.38"

All PHP 7.0.X users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=dev-lang/php-7.0.32"

All PHP 7.1.X users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=dev-lang/php-7.1.22"

All PHP 7.2.x users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=dev-lang/php-7.2.10"
CVE-2018-10545 CVE-2018-10546 CVE-2018-10548 CVE-2018-10549 CVE-2018-17082 b-man b-man