**2.5.12** (2015-05-27) * security #14759 CVE-2015-4050 [HttpKernel] Do not call the FragmentListener if _controller is already defined (jakzal). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-9034 2015-05-28 06:14:42 -------------------------------------------------------------------------------- Name : php-symfony Product : Fedora 22 Version : 2.5.12 Release : 1.fc22 URL : https://symfony.com/ Summary : PHP framework for web projects Description : PHP framework for web projects -------------------------------------------------------------------------------- Update Information: **2.5.12** (2015-05-27) * security #14759 CVE-2015-4050 [HttpKernel] Do not call the FragmentListener if _controller is already defined (jakzal) -------------------------------------------------------------------------------- ChangeLog: * Wed May 27 2015 Remi Collet - 2.5.12-1 - Update to 2.5.12 - security fix for CVE-2015-4050 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1227264 - CVE-2015-4050 php-symfony: ESI unauthorized access https://bugzilla.redhat.com/show_bug.cgi?id=1227264 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update php-symfony' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
Get the latest Linux and open source security news straight to your inbox.