php: security bump to version 5.5.14
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Fri, 27 Jun 2014 13:17:50 +0000 (10:17 -0300)
committerThomas Petazzoni <thomas.petazzoni@free-electrons.com>
Sun, 29 Jun 2014 08:41:19 +0000 (10:41 +0200)
commit67aaef1cb2080cfa7b0b50be8e01cf1c799a511b
tree958009dd168a2d88b7f3383913a1f718d7b5a616
parent334c6ab7f1d8acfcda8b70ffe970c5fb62baaaf0
php: security bump to version 5.5.14

Fixes:

CVE-2014-3981 - insecure temporary file use in the configure script.
CVE-2014-0207 - cdf_read_short_sector insufficient boundary check.
CVE-2014-3478 - mconvert incorrect handling of truncated pascal string
size.
CVE-2014-3479 - cdf_check_stream_offset insufficient boundary check.
CVE-2014-3480 - cdf_count_chain insufficient boundary check.
CVE-2014-3487 - cdf_read_property_info insufficient boundary check.
CVE-2014-4049 - Fix potential segfault in dns_get_record().
CVE-2014-3515 - unserialize() SPL ArrayObject / SPLObjectStorage Type
Confusion.

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
package/php/php.mk