| Commit message (Collapse) | Author | Age | Files | Lines |
... | |
|
|
|
| |
CVE-2018-5712
|
|
|
|
| |
CVE-2018-7602 https://www.drupal.org/SA-CORE-2018-004
|
| |
|
|
|
|
| |
Problem with iconv has been fixed in upstream: https://github.com/nextcloud/server/pull/8674.
|
| |
|
| |
|
|
|
|
|
|
| |
PHP lacks some functionality when zlib extension built dynamic.
Ref #8299 (https://bugs.alpinelinux.org/issues/8299)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
fixes #8702
CVE-2018-5125: Memory safety bugs fixed in Firefox 59 and Firefox ESR
52.7
CVE-2018-5127: Buffer overflow manipulating SVG animatedPathSegList
CVE-2018-5129: Out-of-bounds write with malformed IPC messages
CVE-2018-5130: Mismatched RTP payload type can trigger memory corruption
CVE-2018-5131: Fetch API improperly returns cached copies of
no-store/no-cache resources
CVE-2018-5144: Integer overflow during Unicode conversion
CVE-2018-5145: Memory safety bugs fixed in Firefox ESR 52.7
|
|
|
|
|
|
| |
Fixes CVE-2017-3738, CVE-2018-0739, CVE-2018-0733
Rebuilds packages that link openssl statically.
|
| |
|
| |
|
| |
|
|
|
|
| |
CVE-2018-7600
|
|
|
|
| |
use mariadb-dev instead of mariadb-connector-c
|
|
|
|
|
|
| |
(CVE-2018-6532,CVE-2018-6534,CVE-2018-6535)
fixes #8716
|
|
|
|
| |
Fixes segfaults & random deadlock
|
|
|
|
| |
Fixes #8712
|
|
|
|
|
|
|
|
|
|
|
| |
CVE-2018-7320, CVE-2018-7321, CVE-2018-7322, CVE-2018-7323,
CVE-2018-7324, CVE-2018-7325, CVE-2018-7326, CVE-2018-7327,
CVE-2018-7328, CVE-2018-7329, CVE-2018-7330, CVE-2018-7331,
CVE-2018-7332, CVE-2018-7333, CVE-2018-7334, CVE-2018-7335,
CVE-2018-7336, CVE-2018-7337, CVE-2018-7417, CVE-2018-7418,
CVE-2018-7419, CVE-2018-7420
Fixes #8651
|
| |
|
| |
|
| |
|
|
|
|
| |
switch to a stable release channel instead of docker 'edge'
|
|
|
|
| |
This reverts commit a14600015b1965e2c3815c1e259a6daaab5fdf7c.
|
| |
|
| |
|
| |
|
|
|
|
| |
fixes #8590
|
|
|
|
| |
https://www.drupal.org/SA-CORE-2018-001
|
|
|
|
| |
fixes #8539
|
|
|
|
| |
fixes #8512
|
|
|
|
| |
fixes #8508
|
| |
|
|
|
|
|
|
| |
Fixes #8505
Signed-off-by: Leonardo Arena <rnalrd@alpinelinux.org>
|
|
|
|
| |
contrib dir
|
| |
|
|
|
|
|
|
| |
CVE-2018-5334, CVE-2018-5335, CVE-2018-5336
Fixes #8434
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
=====================================================================
FAILED TEST SUMMARY
---------------------------------------------------------------------
Test for blowfish compatibility [ext/mcrypt/tests/blowfish.phpt]
OO API [ext/tidy/tests/020.phpt]
getConfig() method - basic test for getConfig() [ext/tidy/tests/030.phpt]
=====================================================================
=====================================================================
FAILED TEST SUMMARY
---------------------------------------------------------------------
Bug #65646 (re-enable CURLOPT_FOLLOWLOCATION with open_basedir or safe_mode): open_basedir disabled [ext/curl/tests/bug65646.phpt]
OO API [ext/tidy/tests/020.phpt]
getConfig() method - basic test for getConfig() [ext/tidy/tests/030.phpt]
=====================================================================
=====================================================================
FAILED TEST SUMMARY
---------------------------------------------------------------------
Test for bug 52013 about Phar::decompressFiles(). [ext/phar/tests/bug52013.phpt]
Phar: test readfile() interception [ext/phar/tests/readfile.phpt]
OO API [ext/tidy/tests/020.phpt]
getConfig() method - basic test for getConfig() [ext/tidy/tests/030.phpt]
=====================================================================
|
|
|
|
|
|
|
|
|
| |
- CVE-2018-5711
- CVE-2018-5712
Ref http://php.net/archive/2018.php#id2018-01-04-4
(cherry picked from commit 5e4dbc0d75238b02e3ad3bd55b5ac3a8b74bab3a)
|
|
|
|
|
|
|
| |
- CVE-2018-5711
- CVE-2018-5712
Ref http://php.net/archive/2018.php#id2018-01-04-3
|
|
|
|
|
|
| |
CVE-2018-5089 CVE-2018-5091 CVE-2018-5095 CVE-2018-5096
CVE-2018-5097 CVE-2018-5098 CVE-2018-5099 CVE-2018-5102
CVE-2018-5103 CVE-2018-5104 CVE-2018-5117
|
| |
|
|
|
|
|
|
| |
Enable check()
(cherry picked from commit 9e81be5f331abefc06aa5f2dec67f906d45e13d2)
|
| |
|
|
|
|
| |
Fixes #8298
|
| |
|
|
|
|
|
|
|
|
| |
CVE-2017-17784, CVE-2017-17785, CVE-2017-17786, CVE-2017-17787, CVE-2017-17789
Fixes #8351
CVE-2017-17788 applies only to >= v2.9.6
|
|
|
|
|
|
|
|
|
|
| |
CVE-2017-7156
CVE-2017-7157
CVE-2017-13856
CVE-2017-13866
CVE-2017-13870
fixes #8334
|
|
|
|
| |
CVE-2017-17084, CVE-2017-17085). Fixes #8269
|
|
|
|
| |
(CVE-2017-15090-15092-15093-15094). Fixes #8254
|