php 보안 업데이트

 : 2020.06.10
     : php-100:7.0.33-5.an3
     : AnNyung Packaging Team


    PHP is an HTML-embedded scripting language.  PHP attempts to make it
    easy for developers to write dynamically generated web pages.  PHP
    also offers built-in database integration for several commercial
    and non-commercial database management systems, so writing a
    database-enabled web page with PHP is fairly simple.  The most
    common use of PHP coding is probably as a replacement for CGI
    scripts.  The mod_php module enables the Apache web server to
    understand and process the embedded PHP language in web pages.
    Building option:
    	--with no_goto : if don't add vm kind option with goto..


    - security issues
      . CVE-2019-11048 Core: Long filenames cause OOM and temp files are not cleaned (#78875)
      . CVE-2019-11048 Core: Long variables in multipart/form-data cause OOM and temp files are not cleaned (#78876)
      . CVE-2020-7064 EXIF: Use-of-uninitialized-value in exif (#79282)
      . CVE-2020-7066 Standard: get_headers() silently truncates after a null byte (#79329)
      . CVE-2020-7063 Phar: Files added to tar with Phar::buildFromIterator have all-access permissions (#79082)
      . CVE-2020-7062 Sessions: Null Pointer Dereference in PHP Session Upload Progress (#79221)

        . php-7.0.33-5.an3.src.rpm

        . php-7.0.33-5.an3.x86_64.rpm
        . php-cli-7.0.33-5.an3.x86_64.rpm
        . php-dba-7.0.33-5.an3.x86_64.rpm
        . php-dblib-7.0.33-5.an3.x86_64.rpm
        . php-devel-7.0.33-5.an3.x86_64.rpm
        . php-extension-7.0.33-5.an3.x86_64.rpm
        . php-fpm-7.0.33-5.an3.x86_64.rpm
        . php-odbc-7.0.33-5.an3.x86_64.rpm
        . php-pgsql-7.0.33-5.an3.x86_64.rpm


