#14087: php-7.4.11
-------------------------+-----------------------
 Reporter:  bdubbs       |       Owner:  bdubbs
     Type:  enhancement  |      Status:  assigned
 Priority:  high         |   Milestone:  10.1
Component:  BOOK         |     Version:  SVN
 Severity:  normal       |  Resolution:
 Keywords:               |
-------------------------+-----------------------
Changes (by bdubbs):

 * priority:  normal => high


Comment:

 01 Oct 2020, PHP 7.4.11

 - Core:
   - Fixed bug 79699 (PHP parses encoded cookie names so malicious
 `__Host-`
     cookies can be sent). (CVE-2020-7070)
   - Fixed bug 79979 (passing value to by-ref param via CUFA crashes).
   - Fixed bug 80037 (Typed property must not be accessed before
 initialization
     when __get() declared).
   - Fixed bug 80048 (Bug 69100 has not been fixed for Windows).
   - Fixed bug 80049 (Memleak when coercing integers to string via variadic
     argument).

 - Calendar:
   - Fixed bug 80007 (Potential type confusion in unixtojd() parameter
 parsing).

 - COM:
   - Fixed bug 64130 (COM obj parameters passed by reference are not
 updated).

 - OPcache:
   - Fixed bug 80002 (calc free space for new interned string is wrong).
   - Fixed bug 80046 (FREE for SWITCH_STRING optimized away).
   - Fixed bug 79825 (opcache.file_cache causes SIGSEGV when custom opcode
     handlers changed).

 - OpenSSL:
   - Fixed bug 9601 (Wrong ciphertext/tag in AES-CCM encryption for a 12
     bytes IV). (CVE-2020-7069)

 - PDO:
   - Fixed bug 80027 (Terrible performance using $query->fetch on queries
 with
     many bind parameters

 - Standard:
   - Fixed bug 79986 (str_ireplace bug with diacritics characters).
   - Fixed bug 80077 (getmxrr test bug).
   - Fixed bug 72941 (Modifying bucket->data by-ref has no effect any
 longer).
   - Fixed bug 80067 (Omitting the port in bindto setting errors).

--
Ticket URL: <http://wiki.linuxfromscratch.org/blfs/ticket/14087#comment:2>
BLFS Trac <http://wiki.linuxfromscratch.org/blfs>
Beyond Linux From Scratch
-- 
http://lists.linuxfromscratch.org/listinfo/blfs-book
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page

Reply via email to