In this release we’ve updated PHP to the latest versions. PHP 7.0 has been updated from 7.0.28
to 7.0.30
, PHP 7.1 from 7.1.15
to 7.1.17
and PHP 5.6 from 5.6.34
to 5.6.36
.
The complete changelog can be reviewed here for PHP 7 and here for PHP 5.
Among other things, this update fixes the CVE-2018-10549 Heap Buffer Overflow that made the exif_read_data function vulnerable for out of bound reads while processing crafted JPG data.
Changes will be deployed over the course of this week.