]> granicus.if.org Git - php/commitdiff
Update NEWS
authorStanislav Malyshev <stas@php.net>
Mon, 29 Jul 2019 07:55:18 +0000 (00:55 -0700)
committerStanislav Malyshev <stas@php.net>
Mon, 29 Jul 2019 20:16:53 +0000 (13:16 -0700)
NEWS

diff --git a/NEWS b/NEWS
index d9c877167070eba1bab8a78ac18f6126a3778ebb..f2e22b62b6a11137876948cffef98ffffd1f1b80 100644 (file)
--- a/NEWS
+++ b/NEWS
@@ -5,6 +5,12 @@ PHP                                                                        NEWS
 - SQLite:
   . Upgraded to SQLite 3.28.0. (cmb)
 
+- EXIF:
+  . Fixed bug #78256 (heap-buffer-overflow on exif_process_user_comment).
+  (CVE-2019-11042) (Stas)
+  . Fixed bug #78222 (heap-buffer-overflow on exif_scan_thumbnail).
+  (CVE-2019-11041) (Stas)
+
 30 May 2019, PHP 7.1.30
 
 - EXIF: