Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Fedora 22: Critical Update 2015-8704 for php-ZendFramework Header Issues

fedora
Calendar Grey May 30, 2015
Dist Fedora Esm H88
Explore vital enhancements in php-ZendFramework that tackle security flaws and fortify header authentication.
**Zend Framework 1.12.13** * 567: Cast int and float to string when creating headers **Zend Framework 1.12.12** * 493: PHPUnit not being installed * 511: Add PATCH to the list of a...

Summary

Extending the art & spirit of PHP, Zend Framework is based on simplicity,

object-oriented best practices, corporate friendly licensing, and a rigorously

tested agile code base. Zend Framework is focused on building more secure,

reliable, and modern Web 2.0 applications & web services, and consuming widely

available APIs from leading vendors like Google, Amazon, Yahoo!, Flickr, as

well as API providers and catalogers like StrikeIron and ProgrammableWeb.

Update Information:

**Zend Framework 1.12.13** * 567: Cast int and float to string when creating headers

**Zend Framework 1.12.12** * 493: PHPUnit not being installed * 511: Add PATCH to the list of allowed methods in Zend_Controller_Request_HttpTestCase * 513: Save time and space when cloning PHPUnit * 515: !IE conditional comments bug * 516: Zend_Locale does not honor parentLocale configuration * 518: Run travis build also on PHP 7 builds * 534: Failing unit test: Zend_Validate_EmailAddressTest::testIdnHostnameInEmaillAddress * 536: Zend_Measure_Number convert some decimal numbers to roman with space char * 537: Extend view renderer controller fix (#440) * 540: Fix PHP 7 BC breaks in Zend_XmlRpc/Amf_Server * 541: Fixed errors in tests on PHP7 * 542: Correctly reset the sub-path when processing routes * 545: Fixed path delimeters being stripped by chain routes affecting later routes * 546: TravisCI: Skip memcache(d) on PHP 5.2 * 547: Session Validators throw 'general' Session Exceptio...

Read the Full Advisory

Change Log

* Wed May 20 2015 Remi Collet - 1.12.13-1 - update to 1.12.13 - add composer provides

References


[ 1 ] Bug #1215712 - CVE-2015-3154 php-ZendFramework2: ZF2015-04: Potential header and mail injection vulnerability https://bugzilla.redhat.com/show_bug.cgi?id=1215712

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update php-ZendFramework' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: php-ZendFramework
Product: Fedora 22
Version: 1.12.13
Release: 1.fc22
Summary: Leading open-source PHP framework

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here