add CVE-2011-4718

This commit is contained in:
Stanislav Malyshev 2013-08-18 14:42:06 -07:00
parent bf0c6f2858
commit b33a1a1397

2
NEWS
View File

@ -54,7 +54,7 @@ PHP NEWS
- Sessions:
. Implemented strict sessions RFC (https://wiki.php.net/rfc/strict_sessions)
which protects against session fixation attacks and session collisions.
(Yasuo Ohgaki)
(CVE-2011-4718). (Yasuo Ohgaki)
. Fixed possible buffer overflow under Windows. Note: Not a security fix.
(Yasuo)
. Changed session.auto_start to PHP_INI_PERDIR. (Yasuo)