Bug 1173786 - php-fpm in php7 package lacks /run/php for socket
php-fpm in php7 package lacks /run/php for socket
Status: RESOLVED FIXED
Classification: openSUSE
Product: openSUSE Distribution
Classification: openSUSE
Component: Development
Leap 15.2
Other Other
: P5 - None : Normal (vote)
: ---
Assigned To: Petr Gajdos
E-mail List
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2020-07-06 23:24 UTC by Daniel Molkentin
Modified: 2021-09-14 12:51 UTC (History)
4 users (show)

See Also:
Found By: ---
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---
pgajdos: SHIP_STOPPER?


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Daniel Molkentin 2020-07-06 23:24:38 UTC
php-fpm should provide a tmpdir.d entry to allow adding sockets for fpm. This way, it can talk to e.g. nginx without using a TCP socket.
Comment 1 Marcus Rückert 2020-07-06 23:27:56 UTC
Please also apply this to the next sle15 maintenance update (sr#819078)
Comment 2 OBSbugzilla Bot 2020-07-07 09:40:06 UTC
This is an autogenerated message for OBS integration:
This bug (1173786) was mentioned in
https://build.opensuse.org/request/show/819153 Factory / php7
Comment 3 OBSbugzilla Bot 2020-07-09 15:00:07 UTC
This is an autogenerated message for OBS integration:
This bug (1173786) was mentioned in
https://build.opensuse.org/request/show/819741 Factory / php7
Comment 5 OBSbugzilla Bot 2020-07-10 07:30:07 UTC
This is an autogenerated message for OBS integration:
This bug (1173786) was mentioned in
https://build.opensuse.org/request/show/819887 Factory / php7
Comment 6 Petr Gajdos 2020-07-10 09:55:26 UTC
Submitted for TW/php7 and 15sp2/php7. If anything is missing, let me know.
Comment 7 Petr Gajdos 2020-07-10 09:57:33 UTC
(Thanks Daniel for Factory submit.)
Comment 8 Swamp Workflow Management 2020-08-07 10:14:33 UTC
SUSE-RU-2020:2162-1: An update that has one recommended fix can now be installed.

Category: recommended (moderate)
Bug References: 1173786
CVE References: 
JIRA References: 
Sources used:
SUSE Linux Enterprise Module for Web Scripting 15-SP2 (src):    php7-7.4.6-3.3.1
SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP2 (src):    php7-7.4.6-3.3.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 9 Zsolt KALMAR 2020-08-12 05:17:54 UTC
Hi Petr,

can you send this fix for SLE-15:Update too? Thanks.
Comment 10 Petr Gajdos 2020-08-12 09:59:38 UTC
Zsolt, done.
Comment 12 Swamp Workflow Management 2020-08-12 22:12:55 UTC
openSUSE-RU-2020:1195-1: An update that has one recommended fix can now be installed.

Category: recommended (moderate)
Bug References: 1173786
CVE References: 
JIRA References: 
Sources used:
openSUSE Leap 15.2 (src):    php7-7.4.6-lp152.2.3.2, php7-test-7.4.6-lp152.2.3.2
Comment 14 Swamp Workflow Management 2020-09-02 16:14:08 UTC
SUSE-SU-2020:2455-1: An update that solves one vulnerability and has two fixes is now available.

Category: security (moderate)
Bug References: 1173786,1174010,1175223
CVE References: CVE-2020-7068
JIRA References: 
Sources used:
SUSE Linux Enterprise Module for Web Scripting 15-SP1 (src):    php7-7.2.5-4.61.1
SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP1 (src):    php7-7.2.5-4.61.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 15 Swamp Workflow Management 2020-09-07 13:39:06 UTC
openSUSE-SU-2020:1354-1: An update that solves one vulnerability and has two fixes is now available.

Category: security (moderate)
Bug References: 1173786,1174010,1175223
CVE References: CVE-2020-7068
JIRA References: 
Sources used:
openSUSE Leap 15.1 (src):    php7-7.2.5-lp151.6.32.1, php7-test-7.2.5-lp151.6.32.1
Comment 18 Daniel Molkentin 2020-10-12 10:43:26 UTC
I'd say so. Doesn't hurt and provides consistency and it seems that tmpfiles.d is already provided with the systemd versions provided in SLE12-SP3/4 (according to https://documentation.suse.com/sles/12-SP4/html/SLES-all/cha-systemd.html)
Comment 20 Petr Gajdos 2020-10-12 11:35:43 UTC
Submitted also for 12/php74, 12/php72, 12/php7.
Comment 23 Swamp Workflow Management 2020-10-13 16:17:50 UTC
SUSE-SU-2020:2896-1: An update that solves two vulnerabilities and has one errata is now available.

Category: security (important)
Bug References: 1173786,1177351,1177352
CVE References: CVE-2020-7069,CVE-2020-7070
JIRA References: 
Sources used:
SUSE Linux Enterprise Software Development Kit 12-SP5 (src):    php74-7.4.6-1.13.1
SUSE Linux Enterprise Module for Web Scripting 12 (src):    php74-7.4.6-1.13.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 24 Swamp Workflow Management 2020-10-14 16:17:45 UTC
SUSE-SU-2020:2920-1: An update that solves one vulnerability and has one errata is now available.

Category: security (important)
Bug References: 1173786,1177352
CVE References: CVE-2020-7070
JIRA References: 
Sources used:
SUSE Linux Enterprise Software Development Kit 12-SP5 (src):    php7-7.0.7-50.102.1
SUSE Linux Enterprise Module for Web Scripting 12 (src):    php7-7.0.7-50.102.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 25 Swamp Workflow Management 2020-10-16 13:19:56 UTC
SUSE-SU-2020:2943-1: An update that solves two vulnerabilities and has one errata is now available.

Category: security (important)
Bug References: 1173786,1177351,1177352
CVE References: CVE-2020-7069,CVE-2020-7070
JIRA References: 
Sources used:
SUSE Linux Enterprise Software Development Kit 12-SP5 (src):    php72-7.2.5-1.54.1
SUSE Linux Enterprise Module for Web Scripting 12 (src):    php72-7.2.5-1.54.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 26 Swamp Workflow Management 2020-10-22 13:29:13 UTC
SUSE-SU-2020:2997-1: An update that solves two vulnerabilities and has one errata is now available.

Category: security (important)
Bug References: 1173786,1177351,1177352
CVE References: CVE-2020-7069,CVE-2020-7070
JIRA References: 
Sources used:
SUSE Linux Enterprise Server for SAP 15 (src):    php7-7.2.5-4.67.2
SUSE Linux Enterprise Server 15-LTSS (src):    php7-7.2.5-4.67.2
SUSE Linux Enterprise Module for Web Scripting 15-SP1 (src):    php7-7.2.5-4.67.2
SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP1 (src):    php7-7.2.5-4.67.2
SUSE Linux Enterprise High Performance Computing 15-LTSS (src):    php7-7.2.5-4.67.2
SUSE Linux Enterprise High Performance Computing 15-ESPOS (src):    php7-7.2.5-4.67.2

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 27 Swamp Workflow Management 2020-10-29 23:16:26 UTC
openSUSE-SU-2020:1767-1: An update that solves two vulnerabilities and has one errata is now available.

Category: security (important)
Bug References: 1173786,1177351,1177352
CVE References: CVE-2020-7069,CVE-2020-7070
JIRA References: 
Sources used:
openSUSE Leap 15.1 (src):    php7-7.2.5-lp151.6.36.7, php7-test-7.2.5-lp151.6.36.7