critical Security update for php7
SUSE-SLE-Module-Legacy-15-SP7-2026-3510


This update for php7 fixes the following issues: - CVE-2026-7260: circular symbolic links in phar archives can lead to unbounded recursion and cause C stack exhaustion (bsc#1273077). - CVE-2026-9672: security issues in `libgd` (bsc#1273078). - CVE-2026-17543: improper escaping of backslashes in user-provided parameters allows for trivial SQL injection in `ext-pgsql` (bsc#1273075).


cloud_download Downloads

Legacy Module 15.7 aarch64
  • Packages
    apache2-mod_php7
    PHP7 module for the Apache 2.x webserver
    7.4.33-150400.4.68.1 lock rpm lock src
    php7
    Interpreter for the PHP scripting language version 7
    7.4.33-150400.4.68.1 lock rpm lock src
Legacy Module 15.7 ppc64le
  • Packages
    apache2-mod_php7
    PHP7 module for the Apache 2.x webserver
    7.4.33-150400.4.68.1 lock rpm lock src
    php7
    Interpreter for the PHP scripting language version 7
    7.4.33-150400.4.68.1 lock rpm lock src
Legacy Module 15.7 s390x
  • Packages
    apache2-mod_php7
    PHP7 module for the Apache 2.x webserver
    7.4.33-150400.4.68.1 lock rpm lock src
    php7
    Interpreter for the PHP scripting language version 7
    7.4.33-150400.4.68.1 lock rpm lock src
Legacy Module 15.7 x86_64
  • Packages
    apache2-mod_php7
    PHP7 module for the Apache 2.x webserver
    7.4.33-150400.4.68.1 lock rpm lock src
    php7
    Interpreter for the PHP scripting language version 7
    7.4.33-150400.4.68.1 lock rpm lock src