summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorRemi Collet <remi@php.net>2017-07-05 09:26:55 +0200
committerRemi Collet <remi@php.net>2017-07-05 09:26:55 +0200
commit55b880070c55cde810f6fb89cda5c8b405cc95ca (patch)
treef95413ff066e02d7a6105634890ef703ba60ff34
parent703be4f77e662837b64499b0d046a5c8d06a98b9 (diff)
downloadphp-git-55b880070c55cde810f6fb89cda5c8b405cc95ca.tar.gz
NEWS for oniguruma
-rw-r--r--NEWS2
1 files changed, 2 insertions, 0 deletions
diff --git a/NEWS b/NEWS
index d9ca91ab0d..432cc80283 100644
--- a/NEWS
+++ b/NEWS
@@ -259,6 +259,8 @@ WDDX:
. Fixed bug #66797 (mb_substr only takes 32-bit signed integer). (cmb)
. Fixed bug #72910 (Out of bounds heap read in mbc_to_code() / triggered by
mb_ereg_match()). (Stas)
+ . Add oniguruma upstream fix (CVE-2017-9224, CVE-2017-9226, CVE-2017-9227,
+ CVE-2017-9228, CVE-2017-9229) (Remi, Mamoru TASAKA)
- MSSQL:
. Fixed bug #72039 (Use of uninitialised value on mssql_guid_string). (Kalle)