Buffer over-read into uninitialized memory in libgd (CVE-2017-7890).
Security issues from bundled oniguruma in php-mbstring (CVE-2017-9224, CVE-2017-9226, CVE-2017-9227, CVE-2017-9228, CVE-2017-9229).
{ "section": "core" }