development/languages

php-mysqlnd - A module for PHP applications that use MySQL databases

Website: http://www.php.net/
License: PHP
Vendor: Scientific Linux
Description:
The php-mysqlnd package contains a dynamic shared object that will add
MySQL database support to PHP. MySQL is an object-relational database
management system. PHP is an HTML-embeddable scripting language. If
you need MySQL support for PHP applications, you will need to install
this package and the php package.

This package use the MySQL Native Driver

Packages

php-mysqlnd-5.4.16-48.el7.x86_64 [166 KiB] Changelog by Remi Collet (2019-10-29):
- fix underflow in env_path_info in fpm_main.c CVE-2019-11043
php-mysqlnd-5.4.16-46.1.el7_7.x86_64 [166 KiB] Changelog by Remi Collet (2019-10-29):
- fix underflow in env_path_info in fpm_main.c CVE-2019-11043
php-mysqlnd-5.4.16-43.el7_4.1.x86_64 [172 KiB] Changelog by Remi Collet (2018-01-23):
- gd: fix buffer over-read into uninitialized memory CVE-2017-7890
php-mysqlnd-5.4.16-43.el7_4.x86_64 [172 KiB] Changelog by Remi Collet (2017-10-04):
- gd: fix DoS vulnerability in gdImageCreateFromGd2Ctx() CVE-2016-10167
- gd: Signed Integer Overflow gd_io.c CVE-2016-10168
php-mysqlnd-5.4.16-42.el7.x86_64 [172 KiB] Changelog by Remi Collet (2016-08-05):
- bz2: fix improper error handling in bzread() CVE-2016-5399
php-mysqlnd-5.4.16-36.3.el7_2.x86_64 [171 KiB] Changelog by Remi Collet (2016-07-22):
- don't set environmental variable based on user supplied Proxy
  request header CVE-2016-5385
php-mysqlnd-5.4.16-36.el7_1.x86_64 [171 KiB] Changelog by Scientific Linux Auto Patch Process (2015-06-23):
- Eliminated rpmbuild "bogus date" error due to inconsistent weekday,
  by assuming the date is correct and changing the weekday.
php-mysqlnd-5.4.16-23.el7_0.3.x86_64 [168 KiB] Changelog by Jan Kaluza (2014-10-23):
- fileinfo: fix out-of-bounds read in elf note headers. CVE-2014-3710
php-mysqlnd-5.4.16-23.el7_0.1.x86_64 [168 KiB] Changelog by Remi Collet (2014-09-11):
- gd: fix NULL pointer dereference in gdImageCreateFromXpm().
  CVE-2014-2497
- gd: fix NUL byte injection in file names. CVE-2014-5120
- fileinfo: fix extensive backtracking in regular expression
  (incomplete fix for CVE-2013-7345). CVE-2014-3538
- fileinfo: fix mconvert incorrect handling of truncated
  pascal string size. CVE-2014-3478
- fileinfo: fix cdf_read_property_info
  (incomplete fix for CVE-2012-1571). CVE-2014-3587
- spl: fix use-after-free in ArrayIterator due to object
  change during sorting. CVE-2014-4698
- spl: fix use-after-free in SPL Iterators. CVE-2014-4670
- network: fix segfault in dns_get_record
  (incomplete fix for CVE-2014-4049). CVE-2014-3597
php-mysqlnd-5.4.16-23.el7_0.x86_64 [167 KiB] Changelog by Remi Collet (2014-06-13):
- fileinfo: cdf_unpack_summary_info() excessive looping
  DoS. CVE-2014-0237
- fileinfo: CDF property info parsing nelements infinite
  loop. CVE-2014-0238
- fileinfo: cdf_check_stream_offset insufficient boundary
  check. CVE-2014-3479
- fileinfo: cdf_count_chain insufficient boundary check
  CVE-2014-3480
- fileinfo: cdf_read_short_sector insufficient boundary
  check. CVE-2014-0207
- fileinfo: cdf_read_property_info insufficient boundary
  check. CVE-2014-3487
- fileinfo: fix extensive backtracking CVE-2013-7345
- core: type confusion issue in phpinfo(). CVE-2014-4721
- core: fix heap-based buffer overflow in DNS TXT record
  parsing. CVE-2014-4049
- core: unserialize() SPL ArrayObject / SPLObjectStorage
  type confusion flaw. CVE-2014-3515

Listing created by Repoview-0.6.6-4.el7