We have updated the following HardenedPHP packages on all of our servers to the following versions.
Changelog:
alt-php51-5.1.6-106
- fixed bug #77242: heap out of bounds read in xmlrpc_decode();
- fixed bug #77270: imagecolormatch Out Of Bounds Write on Heap;
- fixed bug #77371: heap buffer overflow in mb regex functions - compile_string_node;
- fixed bug #77380: Global out of bounds read in xmlrpc base64 code;
- ALTPHP-686: applied mod_lsapi_mode patch.
alt-php52-5.2.17-135
- fixed bug #77242: heap out of bounds read in xmlrpc_decode();
- fixed bug #77247: heap buffer overflow in phar_detect_phar_fname_ext;
- fixed bug #77270: imagecolormatch Out Of Bounds Write on Heap;
- fixed bug #77371: heap buffer overflow in mb regex functions - compile_string_node;
- fixed bug #77380: Global out of bounds read in xmlrpc base64 code;
- ALTPHP-686: applied mod_lsapi_mode patch.
alt-php53-5.3.29-93
- fixed bug #77242: heap out of bounds read in xmlrpc_decode();
- fixed bug #77247: heap buffer overflow in phar_detect_phar_fname_ext;
- fixed bug #77270: imagecolormatch Out Of Bounds Write on Heap;
- fixed bug #77371: heap buffer overflow in mb regex functions - compile_string_node;
- fixed bug #77380: Global out of bounds read in xmlrpc base64 code;
- ALTPHP-686: applied mod_lsapi_mode patch.
alt-php54-5.4.45-73
- fixed bug #77242: heap out of bounds read in xmlrpc_decode();
- fixed bug #77247: heap buffer overflow in phar_detect_phar_fname_ext;
- fixed bug #77270: imagecolormatch Out Of Bounds Write on Heap;
- fixed bug #77371: heap buffer overflow in mb regex functions - compile_string_node;
- fixed bug #77380: Global out of bounds read in xmlrpc base64 code;
- fixed bug #77418: Heap overflow in utf32be_mbc_to_code;
- ALTPHP-686: applied mod_lsapi_mode patch.
alt-php55-5.5.38-54
- fixed bug #77242: heap out of bounds read in xmlrpc_decode();
- fixed bug #77247: heap buffer overflow in phar_detect_phar_fname_ext;
- fixed bug #77269: Potential unsigned underflow in gdImageScale;
- fixed bug #77270: imagecolormatch Out Of Bounds Write on Heap;
- fixed bug #77371: heap buffer overflow in mb regex functions - compile_string_node;
- fixed bug #77380: Global out of bounds read in xmlrpc base64 code;
- fixed bug #77418: Heap overflow in utf32be_mbc_to_code;
- ALTPHP-686: applied mod_lsapi_mode patch.
Updating your system
All Nuagerie servers are automatically updated, however, the manual update code has been included.
yum groupupdate alt-php