From: Lior Kaplan Date: Thu, 18 Jun 2015 13:56:06 +0000 (+0300) Subject: Add CVE to bugs #69545, #69646 and #69667 X-Git-Tag: php-5.6.11RC1~13^2~5 X-Git-Url: https://granicus.if.org/sourcecode?a=commitdiff_plain;h=811816dc25032867c3489abb8a9089a986aee185;p=php Add CVE to bugs #69545, #69646 and #69667 --- diff --git a/NEWS b/NEWS index f62d1d7a9c..0fb888d69e 100644 --- a/NEWS +++ b/NEWS @@ -53,12 +53,12 @@ PHP NEWS . Fixed POST data processing slowdown due to small input buffer size on Windows. (Jorge Oliveira, Anatol) . Fixed bug #69646 (OS command injection vulnerability in escapeshellarg). - (Anatol Belski) + (CVE-2015-4642) (Anatol Belski) . Fixed bug #69719 (Incorrect handling of paths with NULs). (Stas) - FTP - . Improved fix for bug #69545 (Integer overflow in ftp_genlist() - resulting in heap overflow). (Max Spelsberg) + . Improved fix for bug #69545 (Integer overflow in ftp_genlist() resulting in + heap overflow). (CVE-2015-4643) (Max Spelsberg) - GD: . Fixed bug #69479 (GD fails to build with newer libvpx). (Remi) @@ -88,7 +88,7 @@ PHP NEWS (Matteo Bernardini, Remi) - Postgres: - . Fixed bug #69667 (segfault in php_pgsql_meta_data). (Remi) + . Fixed bug #69667 (segfault in php_pgsql_meta_data). (CVE-2015-4644) (Remi) - Sqlite3: . Upgrade bundled sqlite to 3.8.10.2. (CVE-2015-3414, CVE-2015-3415,