Security update for php7

This update for php7 fixes the following issues:

- CVE-2020-7069: Fixed an issue when AES-CCM mode was used with openssl_encrypt() function with 12 bytes IV,
only first 7 bytes of the IV was used (bsc#1177351).
- CVE-2020-7070: Fixed an issue where percent-encoded cookies could have been used to overwrite existing prefixed cookie names (bsc#1177352).

This update was imported from the SUSE:SLE-15-SP2:Update update project.

Fixed bugs
bnc#1177351
VUL-0: CVE-2020-7069: php72: when AES-CCM mode is used with openssl_encrypt() function with 12 bytes IV, only first 7 bytes of the IV is used
bnc#1177352
VUL-0: CVE-2020-7070: php72: Percent-encoded cookies can be used to overwrite existing prefixed cookie names
Selected Binaries
openSUSE Build Service is sponsored by