--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2018-25100b492c
2018-09-23 19:13:15.937571
--------------------------------------------------------------------------------
Name : php
Product : Fedora 27
Version : 7.1.22
Release : 1.fc27
URL :
http://www.php.net/
Summary : PHP scripting language for creating dynamic web sites
Description :
PHP is an HTML-embedded scripting language. PHP attempts to make it
easy for developers to write dynamically generated web pages. PHP also
offers built-in database integration for several commercial and
non-commercial database management systems, so writing a
database-enabled webpage with PHP is fairly simple. The most common
use of PHP coding is probably as a replacement for CGI scripts.
The php package contains the module (often referred to as mod_php)
which adds support for the PHP language to Apache HTTP Server.
--------------------------------------------------------------------------------
Update Information:
**PHP version 7.1.22** (13 Sep 2018) **Core:** * Fixed bug php#76754 (parent
private constant in extends class memory leak). (Laruence) * Fixed bug php#72443
(Generate enabled extension). (petk) **Apache2:** * Fixed bug php#76582
(Apache bucket brigade sometimes becomes invalid). (stas) **Bz2:** * Fixed
arginfo for bzcompress. (Tyson Andre) **gettext:** * Fixed bug php#76517
(incorrect restoring of LDFLAGS). (sji) **iconv:** * Fixed bug php#68180
(iconv_mime_decode can return extra characters in a header). (cmb) * Fixed bug
php#63839 (iconv_mime_decode_headers function is skipping headers). (cmb) *
Fixed bug php#60494 (iconv_mime_decode does ignore special characters). (cmb) *
Fixed bug php#55146 (iconv_mime_decode_headers() skips some headers). (cmb)
**intl:** * Fixed bug php#74484 (MessageFormatter::formatMessage memory
corruption with 11+ named placeholders). (Anatol) **libxml:** * Fixed bug
php#76777 ("public id" parameter of libxml_set_external_entity_loader callback
undefined). (Ville Hukkam��ki) **mbstring:** * Fixed bug php#76704
(mb_detect_order return value varies based on argument type). (cmb)
**Opcache:** * Fixed bug php#76747 (Opcache treats path containing
"test.pharma.tld" as a phar file). (Laruence) **OpenSSL:** * Fixed bug
php#76705 (unusable ssl => peer_fingerprint in stream_context_create()). (Jakub
Zelenka) **phpdbg:** * Fixed bug php#76595 (phpdbg man page contains outdated
information). (Kevin Abel) **SPL:** * Fixed bug php#68825 (Exception in
DirectoryIterator::getLinkTarget()). (cmb) * Fixed bug php#68175 (RegexIterator
pregFlags are NULL instead of 0). (Tim Siebels) **Standard:** * Fixed bug
php#76778 (array_reduce leaks memory if callback throws exception). (cmb)
**zlib:** * Fixed bug php#65988 (Zlib version check fails when an include/zlib/
style dir is passed to the --with-zlib configure option). (Jay Bonci) * Fixed
bug php#76709 (Minimal required zlib library is 1.2.0.4). (petk)
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 12 2018 Remi Collet <remi(a)remirepo.net> - 7.1.22-1
- Update to 7.1.22 -
http://www.php.net/releases/7_1_22.php
* Thu Aug 16 2018 Remi Collet <remi(a)remirepo.net> - 7.1.21-1
- Update to 7.1.21 -
http://www.php.net/releases/7_1_21.php
* Thu Jul 19 2018 Remi Collet <remi(a)remirepo.net> - 7.1.20-1
- Update to 7.1.20 -
http://www.php.net/releases/7_1_20.php
* Thu Jun 21 2018 Remi Collet <remi(a)remirepo.net> - 7.1.19-1
- Update to 7.1.19 -
http://www.php.net/releases/7_1_19.php
* Thu May 24 2018 Remi Collet <remi(a)remirepo.net> - 7.1.18-1
- Update to 7.1.18 -
http://www.php.net/releases/7_1_18.php
* Wed Apr 25 2018 Remi Collet <remi(a)remirepo.net> - 7.1.17-1
- Update to 7.1.17 -
http://www.php.net/releases/7_1_17.php
* Wed Mar 28 2018 Remi Collet <remi(a)remirepo.net> - 7.1.16-1
- Update to 7.1.16 -
http://www.php.net/releases/7_1_16.php
* Wed Mar 14 2018 Remi Collet <remi(a)remirepo.net> - 7.1.16~RC1-1
- Update to 7.1.16RC1
* Wed Feb 28 2018 Remi Collet <remi(a)remirepo.net> - 7.1.15-1
- Update to 7.1.15 -
http://www.php.net/releases/7_1_15.php
- FPM: revert pid file removal
* Wed Feb 21 2018 Remi Collet <remi(a)remirepo.net> - 7.1.15~RC1-3
- disable ZTS on RHEL
* Fri Feb 16 2018 Remi Collet <remi(a)remirepo.net> - 7.1.15~RC1-2
- disable pspell extension on RHEL
- improve devel dependencies
* Wed Feb 14 2018 Remi Collet <remi(a)remirepo.net> - 7.1.15~RC1-1
- Update to 7.1.15RC1
- adapt ldap patch
* Wed Jan 31 2018 Remi Collet <remi(a)remirepo.net> - 7.1.14-1
- Update to 7.1.14 -
http://www.php.net/releases/7_1_14.php
* Mon Jan 29 2018 Remi Collet <rcollet(a)redhat.com> - 7.1.14~RC1-2
- disable interbase, imap, pdo_dblib and mcrypt on rhel
* Wed Jan 17 2018 Remi Collet <remi(a)remirepo.net> - 7.1.14~RC1-1
- Update to 7.1.14RC1
- define SOURCE_DATE_EPOCH for reproducible build
* Wed Jan 3 2018 Remi Collet <remi(a)remirepo.net> - 7.1.13-1
- Update to 7.1.13 -
http://www.php.net/releases/7_1_13.php
* Wed Dec 6 2017 Remi Collet <remi(a)fedoraproject.org> - 7.1.13~RC1-1
- Update to 7.1.13RC1
* Wed Nov 22 2017 Remi Collet <remi(a)fedoraproject.org> - 7.1.12-1
- Update to 7.1.12 -
http://www.php.net/releases/7_1_12.php
* Wed Nov 8 2017 Remi Collet <remi(a)fedoraproject.org> - 7.1.12~RC1-1
- Update to 7.1.12RC1
* Wed Oct 25 2017 Remi Collet <remi(a)fedoraproject.org> - 7.1.11-1
- Update to 7.1.11 -
http://www.php.net/releases/7_1_11.php
- make php-fpm a weak dependency #1505644
* Wed Oct 11 2017 Remi Collet <remi(a)fedoraproject.org> - 7.1.11~RC1-1
- Update to 7.1.11RC1
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1629552 - CVE-2018-17082 php: Cross-site scripting (XSS) flaw in Apache2
component via body of 'Transfer-Encoding: chunked' request
https://bugzilla.redhat.com/show_bug.cgi?id=1629552
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2018-25100b492c' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------