pkgsrc-Changes-HG archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

[pkgsrc/pkgsrc-2018Q4]: pkgsrc/lang Pullup ticket #5898 - requested by taca



details:   https://anonhg.NetBSD.org/pkgsrc/rev/aa5f5b452c5c
branches:  pkgsrc-2018Q4
changeset: 318101:aa5f5b452c5c
user:      bsiegert <bsiegert%pkgsrc.org@localhost>
date:      Sat Jan 19 21:51:57 2019 +0000

description:
Pullup ticket #5898 - requested by taca
lang/php73: security fix

Revisions pulled up:
- lang/php/phpversion.mk                                        1.244
- lang/php73/distinfo                                           1.2

---
   Module Name:    pkgsrc
   Committed By:   taca
   Date:           Sat Jan 12 15:00:26 UTC 2019

   Modified Files:
           pkgsrc/lang/php: phpversion.mk
           pkgsrc/lang/php73: distinfo

   Log Message:
   lang/php73: update to 7.3.1

   10 Jan 2019, PHP 7.3.1

   - Core:
     . Fixed bug #76654 (Build failure on Mac OS X on 32-bit Intel). (Ryandesign)
     . Fixed bug #71041 (zend_signal_startup() needs ZEND_API).
       (Valentin V. Bartenev)
     . Fixed bug #76046 (PHP generates "FE_FREE" opcode on the wrong line).
       (Nikita)
     . Fixed bug #77291 (magic methods inherited from a trait may be ignored).
       (cmb)

   - CURL:
     . Fixed bug #77264 (curl_getinfo returning microseconds, not seconds).
       (Pierrick)

   - COM:
     . Fixed bug #77177 (Serializing or unserializing COM objects crashes). (cmb)

   - Exif:
     . Fixed bug #77184 (Unsigned rational numbers are written out as signed
       rationals). (Colin Basnett)

   - GD:
     . Fixed bug #77195 (Incorrect error handling of imagecreatefromjpeg()). (cmb)
     . Fixed bug #77198 (auto cropping has insufficient precision). (cmb)
     . Fixed bug #77200 (imagecropauto(?, GD_CROP_SIDES) crops left but not right).
       (cmb)
     . Fixed bug #77269 (efree() on uninitialized Heap data in imagescale leads to
       use-after-free). (cmb)
     . Fixed bug #77270 (imagecolormatch Out Of Bounds Write on Heap). (cmb)

   - MBString:
     . Fixed bug #77367 (Negative size parameter in mb_split). (Stas)
     . Fixed bug #77370 (Buffer overflow on mb regex functions - fetch_token).
       (Stas)
     . Fixed bug #77371 (heap buffer overflow in mb regex functions -
       compile_string_node). (Stas)
     . Fixed bug #77381 (heap buffer overflow in multibyte match_at). (Stas)
     . Fixed bug #77382 (heap buffer overflow due to incorrect length in
       expand_case_fold_string). (Stas)
     . Fixed bug #77385 (buffer overflow in fetch_token). (Stas)
     . Fixed bug #77394 (Buffer overflow in multibyte case folding - unicode).
       (Stas)
     . Fixed bug #77418 (Heap overflow in utf32be_mbc_to_code). (Stas)

   - OCI8:
     . Fixed bug #76804 (oci_pconnect with OCI_CRED_EXT not working). (KoenigsKind)
     . Added oci_set_call_timeout() for call timeouts.
     . Added oci_set_db_operation() for the DBOP end-to-end-tracing attribute.

   - Opcache:
     . Fixed bug #77215 (CFG assertion failure on multiple finalizing switch
       frees in one block). (Nikita)
     . Fixed bug #77275 (OPcache optimization problem for ArrayAccess->offsetGet).
       (Nikita)

   - PCRE:
     . Fixed bug #77193 (Infinite loop in preg_replace_callback). (Anatol)

   - PDO:
     . Handle invalid index passed to PDOStatement::fetchColumn() as error. (Sergei
       Morozov)

   - Phar:
     . Fixed bug #77247 (heap buffer overflow in phar_detect_phar_fname_ext).
       (Stas)

   - Soap:
     . Fixed bug #77088 (Segfault when using SoapClient with null options).
       (Laruence)

   - Sockets:
     . Fixed bug #77136 (Unsupported IPV6_RECVPKTINFO constants on macOS).
       (Mizunashi Mana)

   - Sodium:
     . Fixed bug #77297 (SodiumException segfaults on PHP 7.3). (Nikita, Scott)

   - SPL:
     . Fixed bug #77359 (spl_autoload causes segfault). (Lauri Kentt?)
     . Fixed bug #77360 (class_uses causes segfault). (Lauri Kentt?)

   - SQLite3:
     . Fixed bug #77051 (Issue with re-binding on SQLite3). (BohwaZ)

   - Xmlrpc:
     . Fixed bug #77242 (heap out of bounds read in xmlrpc_decode()). (cmb)
     . Fixed bug #77380 (Global out of bounds read in xmlrpc base64 code). (Stas)

diffstat:

 lang/php/phpversion.mk |   4 ++--
 lang/php73/distinfo    |  10 +++++-----
 2 files changed, 7 insertions(+), 7 deletions(-)

diffs (36 lines):

diff -r 48f7459d13b8 -r aa5f5b452c5c lang/php/phpversion.mk
--- a/lang/php/phpversion.mk    Sat Jan 19 21:44:08 2019 +0000
+++ b/lang/php/phpversion.mk    Sat Jan 19 21:51:57 2019 +0000
@@ -1,4 +1,4 @@
-# $NetBSD: phpversion.mk,v 1.241.2.2 2019/01/19 21:44:08 bsiegert Exp $
+# $NetBSD: phpversion.mk,v 1.241.2.3 2019/01/19 21:51:57 bsiegert Exp $
 #
 # This file selects a PHP version, based on the user's preferences and
 # the installed packages. It does not add a dependency on the PHP
@@ -91,7 +91,7 @@
 PHP70_VERSION= 7.0.33
 PHP71_VERSION= 7.1.26
 PHP72_VERSION= 7.2.14
-PHP73_VERSION= 7.3.0
+PHP73_VERSION= 7.3.1
 
 # Define initial release of major version.
 PHP56_RELDATE= 20140828
diff -r 48f7459d13b8 -r aa5f5b452c5c lang/php73/distinfo
--- a/lang/php73/distinfo       Sat Jan 19 21:44:08 2019 +0000
+++ b/lang/php73/distinfo       Sat Jan 19 21:51:57 2019 +0000
@@ -1,9 +1,9 @@
-$NetBSD: distinfo,v 1.1 2018/12/15 17:12:44 taca Exp $
+$NetBSD: distinfo,v 1.1.2.1 2019/01/19 21:51:57 bsiegert Exp $
 
-SHA1 (php-7.3.0.tar.bz2) = a5dfd570ae1014beb318400db9fab43758f4240b
-RMD160 (php-7.3.0.tar.bz2) = 069f463dfa8c38f5ef06d49a3225d145e89fefdf
-SHA512 (php-7.3.0.tar.bz2) = e2f9e30fb22ebccb72cf0e0c0ef97ce13c429abec17909b982ee91f7061ac2fd9e2325a091088aad5e9b090c444e31fd39096752ce34191d884bd7e9d726479f
-Size (php-7.3.0.tar.bz2) = 14786886 bytes
+SHA1 (php-7.3.1.tar.bz2) = a7e22988da3c298c26810588101a3636c72db99a
+RMD160 (php-7.3.1.tar.bz2) = 8f1be56607fff15806db600426a7304db19d34ff
+SHA512 (php-7.3.1.tar.bz2) = c2b6d9c3b9ec84e152fa659fdf6b08ddcfedc8e110952d9b870a9e146182b637c72df899f20ad2d170837abb75e3ff075e57c8999783ea3ab113e11bfba1258a
+Size (php-7.3.1.tar.bz2) = 14812823 bytes
 SHA1 (patch-configure) = a47c9d3b6ace5fca7cde1cf2e149dc1dc3d8acd4
 SHA1 (patch-disable-filter-url) = d7e450380b584e01e2f01e9c91c864d01991cdbf
 SHA1 (patch-ext_gd_config.m4) = eaecfb31b18700dd642c067ed82748d4f6be2335



Home | Main Index | Thread Index | Old Index