pkgsrc-Changes archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

CVS commit: [pkgsrc-2010Q4] pkgsrc/lang/php53



Module Name:    pkgsrc
Committed By:   sbd
Date:           Tue Mar 22 06:55:45 UTC 2011

Modified Files:
        pkgsrc/lang/php53 [pkgsrc-2010Q4]: Makefile Makefile.common distinfo
        pkgsrc/lang/php53/patches [pkgsrc-2010Q4]: patch-aa patch-ab patch-af
Removed Files:
        pkgsrc/lang/php53/patches [pkgsrc-2010Q4]: patch-ar
            patch-ext_exif_exif.c patch-ext_zip_lib_zip__name__locate.c
            patch-ext_zip_php__zip.c

Log Message:
Pullup ticket #3395 - requested by taca
security fix for lang/php53

Revisions pulled up:
- lang/php53/Makefile                                           1.8
- lang/php53/Makefile.common                                    1.5
- lang/php53/distinfo                                           1.13
- lang/php53/patches/patch-aa                                   1.2
- lang/php53/patches/patch-ab                                   1.4
- lang/php53/patches/patch-af                                   1.2
- lang/php53/patches/patch-ar                                   Removed
- lang/php53/patches/patch-ext_exif_exif.c                      Removed
- lang/php53/patches/patch-ext_zip_lib_zip__name__locate.c      Removed
- lang/php53/patches/patch-ext_zip_php__zip.c                   Removed

---
   Module Name: pkgsrc
   Committed By:        taca
   Date:                Sat Mar 19 07:01:19 UTC 2011

   Modified Files:
        pkgsrc/lang/php53: Makefile Makefile.common distinfo
        pkgsrc/lang/php53/patches: patch-aa patch-ab patch-af
   Removed Files:
        pkgsrc/lang/php53/patches: patch-ar patch-ext_exif_exif.c
            patch-ext_zip_lib_zip__name__locate.c patch-ext_zip_php__zip.c

   Log Message:
   Update lang/php53 package to PHP 5.3.

   PHP 5.3.6 Released!

   [17-Mar-2011]
   The PHP development team would like to announce the immediate availability
   of PHP 5.3.6. This release focuses on improving the stability of the PHP
   5.3.x branch with over 60 bug fixes, some of which are security related.

   Security Enhancements and Fixes in PHP 5.3.6:

   * Enforce security in the fastcgi protocol parsing with fpm SAPI.
   * Fixed bug #54247 (format-string vulnerability on Phar). (CVE-2011-1153)
   * Fixed bug #54193 (Integer overflow in shmop_read()). (CVE-2011-1092)
   * Fixed bug #54055 (buffer overrun with high values for precision ini 
setting).
   * Fixed bug #54002 (crash on crafted tag in exif). (CVE-2011-0708)
   * Fixed bug #53885 (ZipArchive segfault with FL_UNCHANGED on empty
     archive). (CVE-2011-0421)

   Key enhancements in PHP 5.3.6 include:

   * Upgraded bundled Sqlite3 to version 3.7.4.
   * Upgraded bundled PCRE to version 8.11.
   * Added ability to connect to HTTPS sites through proxy with basic
     authentication using stream_context/http/header/Proxy-Authorization.
   * Added options to debug backtrace functions.
   * Changed default value of ini directive serialize_precision from 100 to 17.
   * Fixed Bug #53971 (isset() and empty() produce apparently spurious
     runtime error).
   * Fixed Bug #53958 (Closures can't 'use' shared variables by value and
     by reference).
   * Fixed bug #53577 (Regression introduced in 5.3.4 in open_basedir
     with a trailing forward slash).
   * Over 60 other bug fixes.


To generate a diff of this commit:
cvs rdiff -u -r1.6.2.1 -r1.6.2.2 pkgsrc/lang/php53/Makefile
cvs rdiff -u -r1.4 -r1.4.2.1 pkgsrc/lang/php53/Makefile.common
cvs rdiff -u -r1.9.2.2 -r1.9.2.3 pkgsrc/lang/php53/distinfo
cvs rdiff -u -r1.1.1.1 -r1.1.1.1.8.1 pkgsrc/lang/php53/patches/patch-aa \
    pkgsrc/lang/php53/patches/patch-af
cvs rdiff -u -r1.3 -r1.3.2.1 pkgsrc/lang/php53/patches/patch-ab
cvs rdiff -u -r1.1 -r0 pkgsrc/lang/php53/patches/patch-ar
cvs rdiff -u -r1.1.2.2 -r0 pkgsrc/lang/php53/patches/patch-ext_exif_exif.c \
    pkgsrc/lang/php53/patches/patch-ext_zip_lib_zip__name__locate.c \
    pkgsrc/lang/php53/patches/patch-ext_zip_php__zip.c

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.



Home | Main Index | Thread Index | Old Index