Path to this page:
Subject: CVS commit: [pkgsrc-2020Q3] pkgsrc/lang
From: S.P.Zeidler
Date: 2020-10-21 21:28:42
Message id: 20201021192842.3468FFB28@cvs.NetBSD.org
Log Message:
Pullup ticket #6335 - requested by taca
lang/php72: security update
Revisions pulled up:
- lang/php/phpversion.mk 1.311
- lang/php72/distinfo 1.58
-------------------------------------------------------------------
Module Name: pkgsrc
Committed By: taca
Date: Sun Oct 4 03:14:53 UTC 2020
Modified Files:
pkgsrc/lang/php: phpversion.mk
pkgsrc/lang/php72: distinfo
Log Message:
lang/php72: update to 7.2.34
Update php72 package to 7.2.34.
01 Oct 2020, PHP 7.2.34
- Core:
. Fixed bug #79699 (PHP parses encoded cookie names so malicious `__Host-`
cookies can be sent). (CVE-2020-7070) (Stas)
- OpenSSL:
. Fixed bug #79601 (Wrong ciphertext/tag in AES-CCM encryption for a 12
bytes IV). (CVE-2020-7069) (Jakub Zelenka)
To generate a diff of this commit:
cvs rdiff -u -r1.310 -r1.311 pkgsrc/lang/php/phpversion.mk
cvs rdiff -u -r1.57 -r1.58 pkgsrc/lang/php72/distinfo
Files: