--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2026-dd70decf0b
2026-01-23 01:14:49.116905+00:00
--------------------------------------------------------------------------------

Name        : php
Product     : Fedora 42
Version     : 8.4.17
Release     : 1.fc42
URL         : http://www.php.net/
Summary     : PHP scripting language for creating dynamic web sites
Description :
PHP is an HTML-embedded scripting language. PHP attempts to make it
easy for developers to write dynamically generated web pages. PHP also
offers built-in database integration for several commercial and
non-commercial database management systems, so writing a
database-enabled webpage with PHP is fairly simple. The most common
use of PHP coding is probably as a replacement for CGI scripts.

--------------------------------------------------------------------------------
Update Information:

PHP version 8.4.17 (15 Jan 2025)
Core:
Fix OSS-Fuzz php#465488618 (Wrong assumptions when dumping function signature
with dynamic class const lookup default argument). (ilutov)
Fixed bug GH-20695 (Assertion failure in normalize_value() when parsing
malformed INI input via parse_ini_string()). (ndossche)
Fixed bug GH-20714 (Uncatchable exception thrown in generator). (ilutov)
Fixed bug GH-20352 (UAF in php_output_handler_free via re-entrant ob_start()
during error deactivation). (ndossche)
Bz2:
Fixed bug GH-20620 (bzcompress overflow on large source size). (David Carlier)
DOM:
Fixed bug GH-20722 (Null pointer dereference in DOM namespace node cloning via
clone on malformed objects). (ndossche)
Fixed bug GH-20444 (Dom\XMLDocument::C14N() seems broken compared to
DOMDocument::C14N()). (ndossche)
GD:
Fixed bug GH-20622 (imagestring/imagestringup overflow). (David Carlier)
Intl:
Fix leak in umsg_format_helper(). (ndossche)
LDAP:
Fix memory leak in ldap_set_options(). (ndossche)
Mbstring:
Fixed bug GH-20674 (mb_decode_mimeheader does not handle separator). (Yuya
Hamada)
PCNTL:
Fixed bug with pcntl_getcpuaffinity() on solaris regarding invalid process ids
handling. (David Carlier)
Phar:
Fixed bug GH-20732 (Phar::LoadPhar undefined behavior when reading fails).
(ndossche)
Fix SplFileInfo::openFile() in write mode. (ndossche)
Fix build on legacy OpenSSL 1.1.0 systems. (Giovanni Giacobbi)
Fixed bug php#74154 (Phar extractTo creates empty files). (ndossche)
POSIX:
Fixed crash on posix groups to php array creation on macos. (David Carlier)
SPL:
Fixed bug GH-20678 (resource created by GlobIterator crashes with fclose()).
(David Carlier)
Sqlite3:
Fixed bug GH-20699 (SQLite3Result fetchArray return array|false, null returned).
(ndossche, plusminmax)
Standard:
Fix error check for proc_open() command. (ndossche)
Fix memory leak in mail() when header key is numeric. (Girgias)
Fixed bug GH-20582 (Heap Buffer Overflow in iptcembed). (ndossche)
Zlib:
Fix OOB gzseek() causing assertion failure. (ndossche)
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jan 14 2026 Remi Collet <[email protected]> - 8.4.17-1
- Update to 8.4.17 - http://www.php.net/releases/8_4_17.php
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2026-dd70decf0b' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------

-- 
_______________________________________________
package-announce mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to