| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: php-mbstring | Distribution: Unknown |
| Version: 8.1.34 | Vendor: Remi's RPM repository <https://rpms.remirepo.net/> #StandWithUkraine #NoAI |
| Release: 5.module_php.8.1.fc44.remi | Build date: Thu Oct 1 15:49:13 2026 |
| Group: Unspecified | Build host: builder.remirepo.net |
| Size: 1078667 | Source RPM: php-8.1.34-5.module_php.8.1.fc44.remi.src.rpm |
| Packager: Remi Collet | |
| Url: http://www.php.net/ | |
| Summary: A module for PHP applications which need multi-byte string handling | |
The php-mbstring package contains a dynamic shared object that will add support for multi-byte string handling to PHP.
PHP and LGPLv2 and BSD and OpenLDAP
* Thu Oct 01 2026 Remi Collet <remi@remirepo.net> - 8.1.34-5
- Fix FILTER_SANITIZE_ENCODED does not encode 0xFF
- Fix IPv6 ACL bypass in FastCGI listen.allowed_clients due to partial address comparison
CVE-2026-91768
- Fixed Various packet overreads in mysqlnd wire protocol
CVE-2025-1218
- Fix TLS hostname verification falls back to CN after SAN mismatch
CVE-2026-91769
- Fix Heap buffer overflow in php_openssl_matches_wildcard_name() on crafted server certificate wildcard CN
CVE-2026-91767
- Fix Integer overflow in phar_tar_number() allowing TAR archive entry injection
CVE-2026-6103
- Fix Unbounded recursion in server-side cleanup_xml_node()
CVE-2026-91765
- Fix Integer overflow to buffer overflow in SOAP HTTP parsing
CVE-2025-14181
- Fix Out-of-bounds read in convert.* stream filters when line-break-chars contains NUL
CVE-2026-92842
- Fix Cross-origin credential leak in HTTP stream wrapper redirects
CVE-2026-91766
- Fix Out-of-bounds read in the HTTP stream wrapper when following a redirect with an empty Location header
CVE-2026-93682
* Thu Jul 30 2026 Remi Collet <remi@remirepo.net> - 8.1.34-4
- Fix leak on double DatePeriod::__construct() call
- Fixed SQL injection via E'...' backslash breakout
CVE-2026-17543
- Fixed GHSA-vc5h-9ppw-p5f3 Crash via recursive symlinks
CVE-2026-7260
* Wed Jul 01 2026 Remi Collet <remi@remirepo.net> - 8.1.34-3
- Fix Memory corruption (zend_mm_heap corrupted) in openssl_encrypt with AES-WRAP-PAD
CVE-2026-14355
* Thu May 07 2026 Remi Collet <remi@remirepo.net> - 8.1.34-2
- Fix XSS within status endpoint
CVE-2026-6735
- Fix Null pointer dereference in php_mb_check_encoding() via mb_ereg_search_init()
CVE-2026-7259
- Fix SQL injection via NUL bytes in quoted strings
CVE-2025-14179
- Fix Stale SOAP_GLOBAL(ref_map) pointer with Apache Map
CVE-2026-6722
- Fix Use-after-free after header parsing failure with SOAP_PERSISTENCE_SESSION
CVE-2026-7261
- Fix Broken Apache map value NULL check
CVE-2026-7262
- Fix Signed integer overflow of char array offset
CVE-2026-7568
- Fix Consistently pass unsigned char to ctype.h functions
CVE-2026-7258
* Wed Dec 17 2025 Remi Collet <remi@remirepo.net> - 8.1.34-1
- Update to 8.1.34 - http://www.php.net/releases/8_1_34.php
* Thu Aug 28 2025 Remi Collet <remi@remirepo.net> - 8.1.33-2
- rebuild using gd3php on EL-10
* Wed Jul 02 2025 Remi Collet <remi@remirepo.net> - 8.1.33-1
- Update to 8.1.33 - http://www.php.net/releases/8_1_33.php
* Wed Mar 12 2025 Remi Collet <remi@remirepo.net> - 8.1.32-1
- Update to 8.1.32 - http://www.php.net/releases/8_1_32.php
- use oracle client library version 23.7 on x86_64 and arm64
* Thu Feb 13 2025 Remi Collet <remi@remirepo.net> - 8.1.31-2
- backport fix for ICU 74+
* Wed Nov 20 2024 Remi Collet <remi@remirepo.net> - 8.1.31-1
- Update to 8.1.31 - http://www.php.net/releases/8_1_31.php
/etc/php.d/20-mbstring.ini /usr/lib/.build-id /usr/lib/.build-id/a0 /usr/lib/.build-id/a0/0caf2f960c33a76da011bfc57ede7df48ccf0f /usr/lib64/php/modules/mbstring.so /usr/share/licenses/php-mbstring /usr/share/licenses/php-mbstring/libmbfl_LICENSE
Generated by rpm2html 1.8.1
Fabrice Bellet, Fri Oct 2 14:35:05 2026