php56 보안 업데이트
업데이트 : 2019.06.10
이름 : php56-100:5.6.40-2.an3
벤더 : AnNyung Packaging Team
설명 :
PHP is an HTML-embedded scripting language. PHP attempts to make it
easy for developers to write dynamically generated web pages. PHP
also offers built-in database integration for several commercial
and non-commercial database management systems, so writing a
database-enabled web page with PHP is fairly simple. The most
common use of PHP coding is probably as a replacement for CGI
scripts. The mod_php module enables the Apache web server to
understand and process the embedded PHP language in web pages.
Building option:
--with no_goto : if don't add vm kind option with goto..
변경사항
- security issues
. CVE-2019-11040 EXIF: heap-buffer-overflow on php_jpg_get16 (#77988)
. CVE-2019-11039 Iconv: Out-of-bounds read in iconv.c:_php_iconv_mime_decode() due to integer overflow (#78069)
. CVE-2019-11038 GD: Uninitialized read in gdImageCreateFromXbm (#77973)
. CVE-2019-11036 EXIF: Heap-buffer-overflow in _estrndup via exif_process_IFD_TAG (#77950)
. CVE-2019-11035 EXIF: Heap-buffer-overflow in exif_iif_add_value (#77831)
. CVE-2019-11034 EXIF: Heap-buffer-overflow in php_ifd_get32s (#77753)
업데이트 패키지
SRPMS:
. php56-5.6.40-2.an3.src.rpm
x86_64:
. php56-cli-5.6.40-2.an3.x86_64.rpm
. php56-dba-5.6.40-2.an3.x86_64.rpm
. php56-devel-5.6.40-2.an3.x86_64.rpm
. php56-extension-5.6.40-2.an3.x86_64.rpm
. php56-fpm-5.6.40-2.an3.x86_64.rpm
. php56-mssql-5.6.40-2.an3.x86_64.rpm
. php56-odbc-5.6.40-2.an3.x86_64.rpm
. php56-pgsql-5.6.40-2.an3.x86_64.rpm
|