[Git][security-tracker-team/security-tracker][master] Four CVE affecting php7.0 fixed in unstable upload
Salvatore Bonaccorso
carnil at debian.org
Wed Jul 11 06:57:48 BST 2018
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
b3165b12 by Salvatore Bonaccorso at 2018-07-11T07:57:22+02:00
Four CVE affecting php7.0 fixed in unstable upload
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -8255,7 +8255,7 @@ CVE-2018-10549 (An issue was discovered in PHP before 5.6.36, 7.0.x before 7.0.3
{DSA-4240-1 DLA-1397-1}
- php7.2 <unfixed>
- php7.1 7.1.19-1
- - php7.0 <unfixed>
+ - php7.0 7.0.30-1
- php5 <removed>
[wheezy] - php5 <not-affected> (vulnerable code is not present)
NOTE: Fixed in 5.6.36, 7.0.30, 7.1.17, 7.2.5
@@ -8264,7 +8264,7 @@ CVE-2018-10548 (An issue was discovered in PHP before 5.6.36, 7.0.x before 7.0.3
{DSA-4240-1 DLA-1397-1 DLA-1373-1}
- php7.2 <unfixed>
- php7.1 7.1.19-1
- - php7.0 <unfixed>
+ - php7.0 7.0.30-1
- php5 <removed>
NOTE: Fixed in 5.6.36, 7.0.30, 7.1.17, 7.2.5
NOTE: PHP Bug: https://bugs.php.net/bug.php?id=76248
@@ -8272,7 +8272,7 @@ CVE-2018-10547 (An issue was discovered in ext/phar/phar_object.c in PHP before
{DSA-4240-1 DLA-1397-1 DLA-1373-1}
- php7.2 <unfixed>
- php7.1 7.1.19-1
- - php7.0 <unfixed>
+ - php7.0 7.0.30-1
- php5 <removed>
NOTE: Fixed in 5.6.36, 7.0.30, 7.1.17, 7.2.5
NOTE: PHP Bug: https://bugs.php.net/bug.php?id=76129
@@ -8280,7 +8280,7 @@ CVE-2018-10546 (An issue was discovered in PHP before 5.6.36, 7.0.x before 7.0.3
{DSA-4240-1 DLA-1397-1}
- php7.2 <unfixed>
- php7.1 7.1.19-1
- - php7.0 <unfixed>
+ - php7.0 7.0.30-1
- php5 <removed>
[wheezy] - php5 <not-affected> (does not cause an infinite loop)
NOTE: Fixed in 5.6.36, 7.0.30, 7.1.17, 7.2.5
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b3165b1243115cb82339f280cc64b6cd8994f7d9
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b3165b1243115cb82339f280cc64b6cd8994f7d9
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180711/aabd08b4/attachment.html>
More information about the debian-security-tracker-commits
mailing list