The hardware and bandwidth for this mirror is donated by dogado GmbH, the Webhosting and Full Service-Cloud Provider. Check out our Wordpress Tutorial.
If you wish to report a bug, or if you are interested in having us mirror your free-software or open-source project, please feel free to contact us at mirror[@]dogado.de.

development/languages

php-gd - A module for PHP applications for using the gd graphics library

Website: http://www.php.net/
License: PHP and BSD
Vendor: Scientific Linux
Description:
The php-gd package contains a dynamic shared object that will add
support for using the gd graphics library to PHP.

Packages

php-gd-5.4.16-48.el7.x86_64 [121 KiB] Changelog by Remi Collet (2019-10-29):
- fix underflow in env_path_info in fpm_main.c CVE-2019-11043
php-gd-5.4.16-46.1.el7_7.x86_64 [121 KiB] Changelog by Remi Collet (2019-10-29):
- fix underflow in env_path_info in fpm_main.c CVE-2019-11043
php-gd-5.4.16-43.el7_4.1.x86_64 [126 KiB] Changelog by Remi Collet (2018-01-23):
- gd: fix buffer over-read into uninitialized memory CVE-2017-7890
php-gd-5.4.16-43.el7_4.x86_64 [126 KiB] Changelog by Remi Collet (2017-10-04):
- gd: fix DoS vulnerability in gdImageCreateFromGd2Ctx() CVE-2016-10167
- gd: Signed Integer Overflow gd_io.c CVE-2016-10168
php-gd-5.4.16-42.el7.x86_64 [126 KiB] Changelog by Remi Collet (2016-08-05):
- bz2: fix improper error handling in bzread() CVE-2016-5399
php-gd-5.4.16-36.3.el7_2.x86_64 [125 KiB] Changelog by Remi Collet (2016-07-22):
- don't set environmental variable based on user supplied Proxy
  request header CVE-2016-5385
php-gd-5.4.16-36.el7_1.x86_64 [125 KiB] Changelog by Scientific Linux Auto Patch Process (2015-06-23):
- Eliminated rpmbuild "bogus date" error due to inconsistent weekday,
  by assuming the date is correct and changing the weekday.
php-gd-5.4.16-23.el7_0.3.x86_64 [122 KiB] Changelog by Jan Kaluza (2014-10-23):
- fileinfo: fix out-of-bounds read in elf note headers. CVE-2014-3710
php-gd-5.4.16-23.el7_0.1.x86_64 [122 KiB] Changelog by Remi Collet (2014-09-11):
- gd: fix NULL pointer dereference in gdImageCreateFromXpm().
  CVE-2014-2497
- gd: fix NUL byte injection in file names. CVE-2014-5120
- fileinfo: fix extensive backtracking in regular expression
  (incomplete fix for CVE-2013-7345). CVE-2014-3538
- fileinfo: fix mconvert incorrect handling of truncated
  pascal string size. CVE-2014-3478
- fileinfo: fix cdf_read_property_info
  (incomplete fix for CVE-2012-1571). CVE-2014-3587
- spl: fix use-after-free in ArrayIterator due to object
  change during sorting. CVE-2014-4698
- spl: fix use-after-free in SPL Iterators. CVE-2014-4670
- network: fix segfault in dns_get_record
  (incomplete fix for CVE-2014-4049). CVE-2014-3597
php-gd-5.4.16-23.el7_0.x86_64 [121 KiB] Changelog by Remi Collet (2014-06-13):
- fileinfo: cdf_unpack_summary_info() excessive looping
  DoS. CVE-2014-0237
- fileinfo: CDF property info parsing nelements infinite
  loop. CVE-2014-0238
- fileinfo: cdf_check_stream_offset insufficient boundary
  check. CVE-2014-3479
- fileinfo: cdf_count_chain insufficient boundary check
  CVE-2014-3480
- fileinfo: cdf_read_short_sector insufficient boundary
  check. CVE-2014-0207
- fileinfo: cdf_read_property_info insufficient boundary
  check. CVE-2014-3487
- fileinfo: fix extensive backtracking CVE-2013-7345
- core: type confusion issue in phpinfo(). CVE-2014-4721
- core: fix heap-based buffer overflow in DNS TXT record
  parsing. CVE-2014-4049
- core: unserialize() SPL ArrayObject / SPLObjectStorage
  type confusion flaw. CVE-2014-3515

Listing created by Repoview-0.6.6-4.el7

These binaries (installable software) and packages are in development.
They may not be fully stable and should be used with caution. We make no claims about them.
Health stats visible at Monitor.