File _patchinfo of Package patchinfo.5962
<patchinfo incident="5962"> <issue id="988486" tracker="bnc">VUL-0: CVE-2016-5385: php7,php5,php53: Setting HTTP_PROXY environment variable via Proxy header (httpoxy)</issue> <issue id="1008029" tracker="bnc">VUL-1: CVE-2016-9137: php: Use After Free in unserialize()</issue> <issue id="2016-5385" tracker="cve" /> <issue id="2016-9137" tracker="cve" /> <category>security</category> <rating>moderate</rating> <packager>pgajdos</packager> <description> This update for php7 fixes the following security issues: - CVE-2016-5385: Setting HTTP_PROXY environment variable via Proxy header (httpoxy) (bsc#988486). - CVE-2016-9137: Fixing a Use After Free in unserialize() (bsc#1008029). This update was imported from the SUSE:SLE-12:Update update project.</description> <summary>Security update for php7</summary> </patchinfo>