HardenedPHP updated
New updated HardenedPHP packages are now available for download from our production repository.
Changelog
alt-php44-4.4.9-100
- fix the bug #78793 (Use-after-free in exif parsing under memory sanitizer)
- fix the bug #78878 (Buffer underflow in bc_shift_addsub). (CVE-2019-11046)
- fix the bug #78910 (Heap-buffer-overflow READ in exif). (CVE-2019-11047)
alt-php51-5.1.6-127
- fix the bug #78793 (Use-after-free in exif parsing under memory sanitizer)
- fix the bug #78878 (Buffer underflow in bc_shift_addsub). (CVE-2019-11046)
- fix the bug #78910 (Heap-buffer-overflow READ in exif). (CVE-2019-11047)
- update LiteSpeed SAPI to 7.6
- MODLS-714: add an additional log message about lsphp killed by SIGKILL
- MODLS-717: fix
lsapi_backend_pgrp_max_reqs
andlsapi_backend_pgrp_max_crashes
directives
alt-php52-5.2.17-159
- fix the bug #78793 (Use-after-free in exif parsing under memory sanitizer)
- fix the bug #78878 (Buffer underflow in bc_shift_addsub). (CVE-2019-11046)
- fix the bug #78910 (Heap-buffer-overflow READ in exif). (CVE-2019-11047)
- update LiteSpeed SAPI to 7.6
- MODLS-714: add an additional log message about lsphp killed by SIGKILL
- MODLS-717: fix
lsapi_backend_pgrp_max_reqs
andlsapi_backend_pgrp_max_crashes
directives
alt-php53-5.3.29-122
alt-php54-5.4.45-102
alt-php55-5.5.38-83
alt-php56-5.6.40-32
- fix the bug #78793 (Use-after-free in exif parsing under memory sanitizer)
- fix the bug #78878 (Buffer underflow in bc_shift_addsub). (CVE-2019-11046)
- fix the bug #78910 (Heap-buffer-overflow READ in exif). (CVE-2019-11047)
- fix the bug #78863 (DirectoryIterator class silently truncates after a nullbyte). (CVE-2019-11045)
- update LiteSpeed SAPI to 7.6
- MODLS-714: add an additional log message about lsphp killed by SIGKILL
- MODLS-717: fix
lsapi_backend_pgrp_max_reqs
andlsapi_backend_pgrp_max_crashes
directives
alt-php70-7.0.33-33
alt-php71-7.1.33-2
- fix the bug #78793 (Use-after-free in exif parsing under memory sanitizer)
- fix the bug #78878 (Buffer underflow in bc_shift_addsub). (CVE-2019-11046)
- fix the bug #78910 (Heap-buffer-overflow READ in exif). (CVE-2019-11047)
- fix the bug #78863 (DirectoryIterator class silently truncates after a nullbyte). (CVE-2019-11045)
- fix the bug #78862 (link() silently truncates after a null byte on Windows). (CVE-2019-11044)
- update LiteSpeed SAPI to 7.6
- MODLS-714: add an additional log message about lsphp killed by SIGKILL
- MODLS-717: fix
lsapi_backend_pgrp_max_reqs
andlsapi_backend_pgrp_max_crashes
directives
Update command
yum groupupdate alt-php