English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 22829
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç ½Ã½ºÅÛ¿¡´Â PHP (7.2.x)ÀÇ 7.2.1. ÀÌÀü ¹öÀüÀÌ ¼³Ä¡µÇ¾î ÀÖÀ¸¸ç, ´Ù¼öÀÇ Ãë¾àÁ¡¿¡ ¿µÇâÀ» ¹Þ´Â´Ù.

- ¼öÁ¤µÈ ¹ö±× #75573 (Segmentation fault in 7.1.12 and 7.0.26).

- ¼öÁ¤µÈ ¹ö±× #75384 (PHP °¡ OneDrive ÆÄÀÏ°ú ȣȯµÇÁö ¾Ê´Â °ÍÀ¸·Î º¸ÀδÙ).

- ¼öÁ¤µÈ ¹ö±× #75525 (vcruntime140.dll ¿¡¼­ Á¢±Ù À§¹Ý).

- ¼öÁ¤µÈ ¹ö±× #74862 (°³ÀÎ __clone ÀÌ Á¤ÀǵǾúÀ» ¶§, ÀνºÅϽº º¹Á¦ ºÒ°¡).

- ¼öÁ¤µÈ ¹ö±× #75074 (is-file() ÇÔ¼ö°¡ 260 chars º¸´Ù ±ä ¹®ÀÚ¿­À» »ç¿ëÇÒ ¶§, php-ÇÁ·Î¼¼½º Ãæµ¹ÀÌ ¹ß»ýÇÑ´Ù).

- ¼öÁ¤µÈ ¹ö±× #73830 (µð·ºÅ丮°¡ Á¸ÀçÇÏÁö ¾ÊÀ½).

- ¼öÁ¤µÈ ¹ö±× #64938 (libxml_disable_entity_loader ¼¼ÆÃÀÌ ¿äûµé °£¿¡ °øÀ¯µÈ´Ù).

- ¼öÁ¤µÈ ¹ö±× #75571 (gdImageCreateFromGifCtx ¾È¿¡ ÀáÀçÀû ¹«ÇÑ ·çÇÁ). (CVE-2018-5711)

- ¼öÁ¤µÈ ¹ö±× #75608 (""Narrowing occurred during type inference"" ¿¡·¯).

- ¼öÁ¤µÈ ¹ö±× #75579 (³»ºÎ ¹®ÀÚ¿­ ¹öÆÛ ¿À¹öÇ÷οì´Â Ãæµ¹À» ¾ß±âÇÑ´Ù).

- ¼öÁ¤µÈ ¹ö±× #75570 ("Narrowing occurred during type inference" ¿¡·¯).

- ¼öÁ¤µÈ ¹ö±× #75556 (À¯È¿ÇÏÁö¾ÊÀº opcode 138/1/1).

- ¼öÁ¤µÈ ¹ö±× #74183 (preg_last_error °¡ ¿¡·¯ ¹ß»ý ÈÄ ¿¡·¯Äڵ带 ¸®ÅÏÇÏÁö ¾Ê´Â´Ù).

- ¼öÁ¤µÈ ¹ö±× #74782 (.phar 404 ÆäÀÌÁö ¾È¿¡¼­ µå·¯³ª´Â XSS). (CVE-2018-5712)

- ¼öÁ¤µÈ ¹ö±× #75511 (fread°¡ »ç¿ëµÇÁö ¾Ê´Â ¹öÆÛ ÇØÁ¦ ºÒ°¡).

- ¼öÁ¤µÈ ¹ö±× #75514 (mt_rand°¡ 32-ºñÆ® ȯ°æ¿¡¼­ ÃÖ´ëÃÖ¼Ò °ª ¹ÛÀÇ °ªÀ» ¸®ÅÏÇÔ) (Remi)

- ¼öÁ¤µÈ ¹ö±× #75535 (ºÎÀûÀýÇÏ°Ô ÆĽÌÇÑ HTTP ÀÀ´äÀº PHP ¼¼±×¸ÕÆ® ÆúÆ®¸¦ ¾ß±âÇÑ´Ù).

- ¼öÁ¤µÈ ¹ö±× #75409 (getrandom() ÀÌ ¾ø´Ù´Â Áö½ÃÀڷνá ENOSYS ÀÌ¿Ü¿¡ EFAULT ¸¦ Çã¿ëÇÑ´Ù).

- ¼öÁ¤µÈ ¹ö±× #73124 (php_ini_scanned_files() Á¤È®È÷ º¸°íÇÏÁö ¾ÊÀ½).

- ¼öÁ¤µÈ ¹ö±× #75574 (¸¸¾à ÆĶó¹ÌÅÍ¿¡ ASCII À¯´ÏÄڵ尡 ¾Æ´Ñ ij¸¯ÅÍ°¡ Æ÷ÇԵǾî ÀÖÀ¸¸é, putenv °¡ ÀûÀýÈ÷ µ¿ÀÛÇÏÁö ¾ÊÀ½).

- ¼öÁ¤µÈ ¹ö±× #75540 (libzipdml ¼¼±×¸ÕÆ® ÆúÆ® 1.3.1).

* Âü°í »çÀÌÆ® :
http://www.php.net/ChangeLog-7.php#7.2.1

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
PHP 7.2.1 ÀÌÀüÀÇ 7.2.x ¹öÀüµé
Any operating system Any version
ÇØ°áÃ¥ PHP À¥»çÀÌÆ® ÀÎhttp://www.php.net/downloads.php ¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â PHPÀÇ ÃֽŠ¹öÀü(7.2.1 ÀÌ»ó)À¸·Î ¾÷±×·¹À̵å ÇØ¾ß ÇÑ´Ù.
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)