php56 보안 업데이트
업데이트 : 2019.01.19
이름 : php56-100:5.6.40-1.an3
벤더 : AnNyung Packaging Team
설명 :
PHP is an HTML-embedded scripting language. PHP attempts to make it
easy for developers to write dynamically generated web pages. PHP
also offers built-in database integration for several commercial
and non-commercial database management systems, so writing a
database-enabled web page with PHP is fairly simple. The most
common use of PHP coding is probably as a replacement for CGI
scripts. The mod_php module enables the Apache web server to
understand and process the embedded PHP language in web pages.
Building option:
--with no_goto : if don't add vm kind option with goto..
변경사항
- update 5.6.40
. http://kr.php.net/ChangeLog-5.php#5.6.40
- security issues
. fixed #77269 GD: efree() on uninitialized Heap data in imagescale leads to use-after-free.
. fixed #77270 GD: imagecolormatch Out Of Bounds Write on Heap.
. fixed #77370 Mbstring: Buffer overflow on mb regex functions - fetch_token.
. fixed #77371 Mbstring: heap buffer overflow in mb regex functions - compile_string_node.
. fixed #77381 Mbstring: heap buffer overflow in multibyte match_at.
. fixed #77382 Mbstring: heap buffer overflow due to incorrect length in expand_case_fold_string.
. fixed #77385 Mbstring: buffer overflow in fetch_token.
. fixed #77394 Mbstring: Buffer overflow in multibyte case folding - unicode.
. fixed #77418 Mbstring: Heap overflow in utf32be_mbc_to_code.
. fixed #77247 Phar: heap buffer overflow in phar_detect_phar_fname_ext.
. fixed #77242 Xmlrpc: heap out of bounds read in xmlrpc_decode().
. fixed #77380 Xmlrpc: Global out of bounds read in xmlrpc base64 code.
업데이트 패키지
SRPMS:
. php56-5.6.40-1.an3.src.rpm
x86_64:
. php56-cli-5.6.40-1.an3.x86_64.rpm
. php56-dba-5.6.40-1.an3.x86_64.rpm
. php56-devel-5.6.40-1.an3.x86_64.rpm
. php56-extension-5.6.40-1.an3.x86_64.rpm
. php56-fpm-5.6.40-1.an3.x86_64.rpm
. php56-mssql-5.6.40-1.an3.x86_64.rpm
. php56-odbc-5.6.40-1.an3.x86_64.rpm
. php56-pgsql-5.6.40-1.an3.x86_64.rpm
|