[SECURITY] Fedora 21 Update: php-ZendFramework2-2.3.7-1.fc21

updates at fedoraproject.org updates at fedoraproject.org
Mon Mar 23 07:13:43 UTC 2015

Fedora Update Notification
2015-03-14 05:09:08

Name        : php-ZendFramework2
Product     : Fedora 21
Version     : 2.3.7
Release     : 1.fc21
URL         : http://framework.zend.com
Summary     : Zend Framework 2
Description :
Zend Framework 2 is an open source framework for developing web applications
and services using PHP 5.3+. Zend Framework 2 uses 100% object-oriented code
and utilizes most of the new features of PHP 5.3, namely namespaces, late
static binding, lambda functions and closures.

Zend Framework 2 evolved from Zend Framework 1, a successful PHP framework
with over 15 million downloads.

Note: This meta package installs all base Zend Framework component packages
(Authentication, Barcode, Cache, Captcha, Code, Config, Console, Crypt, Db,
Debug, Di, Dom, Escaper, EventManager, Feed, File, Filter, Form, Http, I18n,
InputFilter, Json, Ldap, Loader, Log, Mail, Math, Memory, Mime, ModuleManager,
Mvc, Navigation, Paginator, Permissions-Acl, Permissions-Rbac, ProgressBar,
Serializer, Server, ServiceManager, Session, Soap, Stdlib, Tag, Test, Text,
Uri, Validator, Version, View, XmlRpc) except the optional Cache-apc and
Cache-memcached packages.

Update Information:

Version **2.3.7** (2015-03-12)
* #7255 Revert BC break against AbstractRestfulController

Version **2.3.6** (2015-03-12)
* ZF2015-03 Zend\Validator\Csrf was incorrectly testing null or improperly formatted token identifiers, allowing them to pass validation. This release provides patches to correct the behavior. If you use the validator, or the corresponding Zend\Form\Element\Csrf, we recommend upgrading immediately.


* Fri Mar 13 2015 Remi Collet <remi at fedoraproject.org> - 2.3.7-1
- Update to 2.3.7
* Tue Feb 24 2015 Remi Collet <remi at fedoraproject.org> - 2.3.5-1
- Update to 2.3.5
- add patch for icu 54, FTBFS detected by Koschei
* Fri Jan 16 2015 Remi Collet <remi at fedoraproject.org> - 2.3.4-1
- Update to 2.3.4
- drop GLPI patch, fixed upstream
- add dependency on ircmaxell/random-lib
- apply upstream changes to inter-package dependencies

This update can be installed with the "yum" update program.  Use
su -c 'yum update php-ZendFramework2' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at

More information about the package-announce mailing list