Files
buildroot/package
Fabrice Fontaine a7e2701040 package/php: security bump to version 7.4.11
- Fix CVE-2020-7069: In PHP versions 7.2.x below 7.2.34, 7.3.x below
  7.3.23 and 7.4.x below 7.4.11, when AES-CCM mode is used with
  openssl_encrypt() function with 12 bytes IV, only first 7 bytes of the
  IV is actually used. This can lead to both decreased security and
  incorrect encryption data.
- Fix CVE-2020-7070: In PHP versions 7.2.x below 7.2.34, 7.3.x below
  7.3.23 and 7.4.x below 7.4.11, when PHP is processing incoming HTTP
  cookie values, the cookie names are url-decoded. This may lead to
  cookies with prefixes like __Host confused with cookies that decode to
  such prefix, thus leading to an attacker being able to forge cookie
  which is supposed to be secure. See also CVE-2020-8184 for more
  information.

https://www.php.net/ChangeLog-7.php#7.4.11

Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
(cherry picked from commit 51d9617474)
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
2020-10-05 08:10:56 +02:00
..
2020-07-18 15:56:46 +02:00
2020-05-09 23:33:54 +02:00
2020-06-04 23:26:37 +02:00
2020-08-15 16:14:28 +02:00
2020-10-03 07:57:08 +02:00
2020-07-12 15:58:40 +02:00
2020-07-18 14:18:33 +02:00
2020-05-09 16:51:17 +02:00
2020-07-11 23:52:42 +02:00
2020-07-27 17:19:46 +02:00
2020-06-02 22:16:32 +02:00
2020-08-13 21:59:36 +02:00
2020-06-22 21:36:15 +02:00
2020-09-01 09:18:37 +02:00
2020-06-29 22:13:00 +02:00
2020-07-09 21:59:10 +02:00
2020-06-14 16:53:13 +02:00
2020-09-29 16:10:49 +02:00
2020-06-20 08:32:25 +02:00
2020-06-06 21:21:13 +02:00
2020-07-19 18:49:56 +02:00
2020-06-18 22:39:22 +02:00
2020-05-25 22:04:35 +02:00
2020-08-05 15:00:32 +02:00
2020-08-12 16:44:27 +02:00
2020-06-25 22:44:51 +02:00
2020-10-02 22:14:10 +02:00
2020-08-19 22:47:44 +02:00
2020-07-14 10:01:05 +02:00
2020-06-10 23:32:37 +02:00
2020-06-20 16:24:06 +02:00
2020-07-18 23:25:26 +02:00
2020-07-13 19:10:20 +02:00
2020-07-12 11:13:26 +02:00
2020-06-06 11:10:32 +02:00
2020-06-23 23:19:03 +02:00
2020-07-12 13:00:39 +02:00
2020-06-04 23:24:46 +02:00
2020-05-26 12:02:13 +02:00
2020-08-28 22:56:49 +02:00
2020-05-15 21:33:59 +02:00
2020-08-29 16:03:15 +02:00
2020-07-27 10:13:06 +02:00
2020-08-02 22:22:06 +02:00
2020-07-26 21:47:22 +02:00
2020-08-16 11:27:28 +02:00
2020-09-11 22:26:29 +02:00
2020-06-20 08:34:09 +02:00
2020-07-18 22:31:26 +02:00
2020-07-26 21:47:07 +02:00
2020-06-29 22:04:21 +02:00
2020-09-25 17:38:40 +02:00
2020-07-12 23:07:44 +02:00
2020-07-12 12:44:43 +02:00
2020-06-05 22:09:21 +02:00
2020-08-28 22:56:49 +02:00
2020-08-23 15:03:18 +02:00
2020-07-13 23:24:19 +02:00
2020-07-12 23:20:13 +02:00
2020-08-31 22:18:09 +02:00
2020-05-28 22:33:52 +02:00
2020-05-09 21:58:38 +02:00
2020-08-28 22:56:49 +02:00
2020-05-25 22:48:44 +02:00
2020-07-05 15:27:44 +02:00
2020-07-16 22:20:07 +02:00
2020-08-03 16:37:23 +02:00
2020-07-11 23:47:27 +02:00
2020-08-16 11:27:28 +02:00
2020-07-12 22:30:44 +02:00
2020-06-14 16:18:53 +02:00
2020-06-17 22:56:56 +02:00
2020-07-14 23:44:31 +02:00
2020-06-17 22:22:21 +02:00
2020-09-29 20:35:02 +02:00
2020-07-27 15:12:53 +02:00
2020-07-16 09:16:36 +02:00
2020-07-12 23:38:46 +02:00
2020-06-18 22:14:18 +02:00
2020-07-16 09:14:34 +02:00
2020-09-29 17:20:20 +02:00
2020-07-07 22:58:39 +02:00
2020-07-16 09:10:40 +02:00
2020-07-27 13:31:00 +02:00