From b33a1a139771b677ddc0858d66111667361d478c Mon Sep 17 00:00:00 2001 From: Stanislav Malyshev Date: Sun, 18 Aug 2013 14:42:06 -0700 Subject: [PATCH] add CVE-2011-4718 --- NEWS | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/NEWS b/NEWS index cc469dd4d0..948dcdc50d 100644 --- a/NEWS +++ b/NEWS @@ -54,7 +54,7 @@ PHP NEWS - Sessions: . Implemented strict sessions RFC (https://wiki.php.net/rfc/strict_sessions) which protects against session fixation attacks and session collisions. - (Yasuo Ohgaki) + (CVE-2011-4718). (Yasuo Ohgaki) . Fixed possible buffer overflow under Windows. Note: Not a security fix. (Yasuo) . Changed session.auto_start to PHP_INI_PERDIR. (Yasuo) -- 2.50.1