The three latest PHP releases all fix security issues in earlier versions: * https://www.php.net/ChangeLog-7.php#7.3.29 * https://www.php.net/ChangeLog-7.php#7.4.21 * https://www.php.net/ChangeLog-8.php#8.0.8 I've already cleaned up the unstable 8.x ebuilds, but the 7.x versions need stabilization. @php-bugs, any objections?
Thank you!
sparc stable
ppc stable
ppc64 stable
amd64 stable
Unable to check for sanity: > no match for package: dev-lang/php-7.4.21
x86 stable
arm done
arm64 done all arches done
Please cleanup, thanks!
Ping
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=8de490e5bdeaef1f24a582a397d962d009da0a97 commit 8de490e5bdeaef1f24a582a397d962d009da0a97 Author: Michael Orlitzky <mjo@gentoo.org> AuthorDate: 2021-08-07 18:51:25 +0000 Commit: Michael Orlitzky <mjo@gentoo.org> CommitDate: 2021-08-07 18:51:49 +0000 dev-lang/php: cleanup after CVE-2021-21704 and CVE-2021-21705. Bug: https://bugs.gentoo.org/799776 Package-Manager: Portage-3.0.20, Repoman-3.0.2 Signed-off-by: Michael Orlitzky <mjo@gentoo.org> dev-lang/php/Manifest | 2 - dev-lang/php/php-7.3.28.ebuild | 758 -------------------------------------- dev-lang/php/php-7.4.19-r1.ebuild | 750 ------------------------------------- 3 files changed, 1510 deletions(-)
Unable to check for sanity: > no match for package: dev-lang/php-7.3.29
GLSA request filed
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/data/glsa.git/commit/?id=4447c90f117a8f0928cc5e880f3cfc9fde7ee918 commit 4447c90f117a8f0928cc5e880f3cfc9fde7ee918 Author: GLSAMaker <glsamaker@gentoo.org> AuthorDate: 2022-09-29 14:23:13 +0000 Commit: John Helmert III <ajak@gentoo.org> CommitDate: 2022-09-29 14:48:00 +0000 [ GLSA 202209-20 ] PHP: Multiple Vulnerabilities Bug: https://bugs.gentoo.org/799776 Bug: https://bugs.gentoo.org/810526 Bug: https://bugs.gentoo.org/819510 Bug: https://bugs.gentoo.org/833585 Bug: https://bugs.gentoo.org/850772 Bug: https://bugs.gentoo.org/857054 Signed-off-by: GLSAMaker <glsamaker@gentoo.org> Signed-off-by: John Helmert III <ajak@gentoo.org> glsa-202209-20.xml | 71 ++++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 71 insertions(+)
GLSA released, all done!