[Buildroot] [PATCH] php: security bump to version 5.5.18

Thomas Petazzoni thomas.petazzoni at free-electrons.com
Fri Oct 17 09:24:47 UTC 2014


Dear Gustavo Zacarias,

On Thu, 16 Oct 2014 14:48:37 -0300, Gustavo Zacarias wrote:
> Fixes:
> CVE-2014-3669 - Integer overflow in unserialize() (32-bits only)
> CVE-2014-3670 - Heap corruption in exif_thumbnail()
> CVE-2014-3668 - Global buffer overflow in mkgmtime() function
> 
> Signed-off-by: Gustavo Zacarias <gustavo at zacarias.com.ar>
> ---
>  package/php/php.hash | 2 +-
>  package/php/php.mk   | 2 +-
>  2 files changed, 2 insertions(+), 2 deletions(-)

Applied, thanks.

Thomas
-- 
Thomas Petazzoni, CTO, Free Electrons
Embedded Linux, Kernel and Android engineering
http://free-electrons.com


More information about the buildroot mailing list