[ubuntu/xenial-security] php7.0 7.0.33-0ubuntu0.16.04.6 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Tue Aug 13 17:42:36 UTC 2019


php7.0 (7.0.33-0ubuntu0.16.04.6) xenial-security; urgency=medium

  * SECURITY UPDATE: Heap-buffer-overflow
    - debian/patches/CVE-2019-11041.patch: check Thumbnail.size in order
      to avoid an overflow in ext/exif.exif.c and adding test to
      ext/exif/tests/bug78222.phpt.
    - CVE-2019-11041
  * SECURITY UPDATE: Heap-buffer-overflow
    - debian/patches/CVE-2019-11042.patch: check ByteCount in order to
      avoid an overflow in ext/exif/exif.c and adding tests to
      ext/exif/tests/bug78256.phpt.
    - CVE-2019-11042

Date: 2019-08-12 19:27:14.392417+00:00
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
https://launchpad.net/ubuntu/+source/php7.0/7.0.33-0ubuntu0.16.04.6
-------------- next part --------------
Sorry, changesfile not available.


More information about the Xenial-changes mailing list