development/languages

php-cli - Command-line interface for PHP

Website: http://www.php.net/
License: PHP and Zend and BSD
Vendor: Scientific Linux
Description:
The php-cli package contains the command-line interface
executing PHP scripts, /usr/bin/php, and the CGI interface.

Packages

php-cli-5.4.16-48.el7.x86_64 [1.6 MiB] Changelog by Remi Collet (2019-10-29):
- fix underflow in env_path_info in fpm_main.c CVE-2019-11043
php-cli-5.4.16-46.1.el7_7.x86_64 [1.6 MiB] Changelog by Remi Collet (2019-10-29):
- fix underflow in env_path_info in fpm_main.c CVE-2019-11043
php-cli-5.4.16-43.el7_4.1.x86_64 [2.7 MiB] Changelog by Remi Collet (2018-01-23):
- gd: fix buffer over-read into uninitialized memory CVE-2017-7890
php-cli-5.4.16-43.el7_4.x86_64 [2.7 MiB] Changelog by Remi Collet (2017-10-04):
- gd: fix DoS vulnerability in gdImageCreateFromGd2Ctx() CVE-2016-10167
- gd: Signed Integer Overflow gd_io.c CVE-2016-10168
php-cli-5.4.16-42.el7.x86_64 [2.7 MiB] Changelog by Remi Collet (2016-08-05):
- bz2: fix improper error handling in bzread() CVE-2016-5399
php-cli-5.4.16-36.3.el7_2.x86_64 [2.7 MiB] Changelog by Remi Collet (2016-07-22):
- don't set environmental variable based on user supplied Proxy
  request header CVE-2016-5385
php-cli-5.4.16-36.el7_1.x86_64 [2.7 MiB] Changelog by Scientific Linux Auto Patch Process (2015-06-23):
- Eliminated rpmbuild "bogus date" error due to inconsistent weekday,
  by assuming the date is correct and changing the weekday.
php-cli-5.4.16-23.el7_0.3.x86_64 [2.7 MiB] Changelog by Jan Kaluza (2014-10-23):
- fileinfo: fix out-of-bounds read in elf note headers. CVE-2014-3710
php-cli-5.4.16-23.el7_0.1.x86_64 [2.7 MiB] Changelog by Remi Collet (2014-09-11):
- gd: fix NULL pointer dereference in gdImageCreateFromXpm().
  CVE-2014-2497
- gd: fix NUL byte injection in file names. CVE-2014-5120
- fileinfo: fix extensive backtracking in regular expression
  (incomplete fix for CVE-2013-7345). CVE-2014-3538
- fileinfo: fix mconvert incorrect handling of truncated
  pascal string size. CVE-2014-3478
- fileinfo: fix cdf_read_property_info
  (incomplete fix for CVE-2012-1571). CVE-2014-3587
- spl: fix use-after-free in ArrayIterator due to object
  change during sorting. CVE-2014-4698
- spl: fix use-after-free in SPL Iterators. CVE-2014-4670
- network: fix segfault in dns_get_record
  (incomplete fix for CVE-2014-4049). CVE-2014-3597
php-cli-5.4.16-23.el7_0.x86_64 [2.7 MiB] Changelog by Remi Collet (2014-06-13):
- fileinfo: cdf_unpack_summary_info() excessive looping
  DoS. CVE-2014-0237
- fileinfo: CDF property info parsing nelements infinite
  loop. CVE-2014-0238
- fileinfo: cdf_check_stream_offset insufficient boundary
  check. CVE-2014-3479
- fileinfo: cdf_count_chain insufficient boundary check
  CVE-2014-3480
- fileinfo: cdf_read_short_sector insufficient boundary
  check. CVE-2014-0207
- fileinfo: cdf_read_property_info insufficient boundary
  check. CVE-2014-3487
- fileinfo: fix extensive backtracking CVE-2013-7345
- core: type confusion issue in phpinfo(). CVE-2014-4721
- core: fix heap-based buffer overflow in DNS TXT record
  parsing. CVE-2014-4049
- core: unserialize() SPL ArrayObject / SPLObjectStorage
  type confusion flaw. CVE-2014-3515

Listing created by Repoview-0.6.6-4.el7