stable

php-ZendFramework2-2.3.9-1.el7

FEDORA-EPEL-2015-6203 created by remi 9 years ago for Fedora EPEL 7

Version 2.3.9 * 7506: resolves issues when UTF-8 values are used in Mail headers, particularly addresses. * 7507: ensures that array values can be used with cookies. * 7514: ensures that multipart MIME messages can be added to Zend\Mail\Message instances in such a way that they do not conflict with ZF2015-04.

Version 2.3.8 * ZF2015-04: Zend\Mail and Zend\Http were both susceptible to CRLF Injection Attack vectors (for HTTP, this is often referred to as HTTP Response Splitting). Both components were updated to perform header value validations to ensure no values contain characters not detailed in their corresponding specifications, and will raise exceptions on detection. Each also provides new facilities for both validating and filtering header values prior to injecting them into header classes. If you use either Zend\Mail or Zend\Http (which includes users of Zend\Mvc), we recommend upgrading immediately.

This update has been submitted for testing by remi.

9 years ago

This update is currently being pushed to the Fedora EPEL 7 testing updates repository.

9 years ago

This update has been pushed to testing

9 years ago

remi has edited this update. New build(s): php-ZendFramework2-2.3.9-1.el7. Removed build(s): php-ZendFramework2-2.3.8-1.el7.

9 years ago

This update has been submitted for testing by remi.

9 years ago

This update is currently being pushed to the Fedora EPEL 7 testing updates repository.

9 years ago

This update has reached 15 days in testing and can be pushed to stable now if the maintainer wishes

9 years ago

This update has been pushed to testing

9 years ago

This update has been submitted for stable by remi.

9 years ago

This update is currently being pushed to the Fedora EPEL 7 stable updates repository.

9 years ago

This update has been pushed to stable

9 years ago

Please login to add feedback.

Metadata
Type
security
Karma
0
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
disabled
Stable by Time
disabled
Dates
submitted
9 years ago
in testing
9 years ago
in stable
9 years ago
modified
9 years ago
BZ#1215712 CVE-2015-3154 php-ZendFramework2: ZF2015-04: Potential header and mail injection vulnerability
0
0
BZ#1223872 CVE-2015-3154 php-ZendFramework2: ZF2015-04: Potential header and mail injection vulnerability [epel-all]
0
0

Automated Test Results