pkgsrc-Changes-HG archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

[pkgsrc/pkgsrc-2019Q4]: pkgsrc/lang Pullup ticket #6142 - requested by taca



details:   https://anonhg.NetBSD.org/pkgsrc/rev/3b0b227ff1e2
branches:  pkgsrc-2019Q4
changeset: 419750:3b0b227ff1e2
user:      bsiegert <bsiegert%pkgsrc.org@localhost>
date:      Sun Mar 08 10:24:19 2020 +0000

description:
Pullup ticket #6142 - requested by taca
lang/php74: security fix

Revisions pulled up:
- lang/php/phpversion.mk                                        1.288
- lang/php74/distinfo                                           1.5

---
   Module Name: pkgsrc
   Committed By:        taca
   Date:                Thu Feb 20 14:45:19 UTC 2020

   Modified Files:
        pkgsrc/lang/php: phpversion.mk
        pkgsrc/lang/php74: distinfo

   Log Message:
   lang/php74: update to 7.4.3

   Update php74 to 7.4.3 (PHP 7.4.3).

   20 Feb 2020, PHP 7.4.3

   - Core:
     . Fixed bug #79146 (cscript can fail to run on some systems). (clarodeus)
     . Fixed bug #79155 (Property nullability lost when using multiple property
       definition). (Nikita)
     . Fixed bug #78323 (Code 0 is returned on invalid options). (Ivan Mikheykin)
     . Fixed bug #78989 (Delayed variance check involving trait segfaults).
       (Nikita)
     . Fixed bug #79174 (cookie values with spaces fail to round-trip). (cmb)
     . Fixed bug #76047 (Use-after-free when accessing already destructed
       backtrace arguments). (Nikita)

   - COM:
     . Fixed bug #79247 (Garbage collecting variant objects segfaults). (cmb)

   - CURL:
     . Fixed bug #79078 (Hypothetical use-after-free in curl_multi_add_handle()).
       (cmb)

   - FFI:
     . Fixed bug #79096 (FFI Struct Segfault). (cmb)

   - IMAP:
     . Fixed bug #79112 (IMAP extension can't find OpenSSL libraries at configure
       time). (Nikita)

    -Intl:
     . Fixed bug #79212 (NumberFormatter::format() may detect wrong type). (cmb)

   - Libxml:
     . Fixed bug #79191 (Error in SoapClient ctor disables DOMDocument::save()).
       (Nikita, cmb)

   - MBString:
     . Fixed bug #79149 (SEGV in mb_convert_encoding with non-string encodings).
       (cmb)

   - MySQLi:
     . Fixed bug #78666 (Properties may emit a warning on var_dump()). (kocsismate)

   - MySQLnd:
     . Fixed bug #79084 (mysqlnd may fetch wrong column indexes with MYSQLI_BOTH).
       (cmb)
     . Fixed bug #79011 (MySQL caching_sha2_password Access denied for password
       with more than 20 chars). (Nikita)

   - Opcache:
     . Fixed bug #79114 (Eval class during preload causes class to be only half
       available). (Laruence)
     . Fixed bug #79128 (Preloading segfaults if preload_user is used). (Nikita)
     . Fixed bug #79193 (Incorrect type inference for self::$field =& $field).
       (Nikita)

   - OpenSSL:
     . Fixed bug #79145 (openssl memory leak). (cmb, Nikita)

   - Phar:
     . Fixed bug #79082 (Files added to tar with Phar::buildFromIterator have
       all-access permissions). (CVE-2020-7063) (stas)
     . Fixed bug #79171 (heap-buffer-overflow in phar_extract_file).
       (CVE-2020-7061) (cmb)
     . Fixed bug #76584 (PharFileInfo::decompress not working). (cmb)

   - Reflection:
     . Fixed bug #79115 (ReflectionClass::isCloneable call reflected class
       __destruct). (Nikita)

   - Session:
     . Fixed bug #79221 (Null Pointer Dereference in PHP Session Upload Progress).
       (CVE-2020-7062) (stas)

   - Standard:
     . Fixed bug #78902 (Memory leak when using stream_filter_append). (liudaixiao)
     . Fixed bug #78969 (PASSWORD_DEFAULT should match PASSWORD_BCRYPT instead of being null). (kocsismate)

   - Testing:
     . Fixed bug #78090 (bug45161.phpt takes forever to finish). (cmb)

   - XSL:
     . Fixed bug #70078 (XSL callbacks with nodes as parameter leak memory). (cmb)

   - Zip:
     . Add ZipArchive::CM_LZMA2 and ZipArchive::CM_XZ constants (since libzip 1.6.0). (Remi)
     . Add ZipArchive::RDONLY (since libzip 1.0.0). (Remi)
     . Add ZipArchive::ER_* missing constants. (Remi)
     . Add ZipArchive::LIBZIP_VERSION constant. (Remi)
     . Fixed bug #73119 (Wrong return for ZipArchive::addEmptyDir Method). (Remi)

diffstat:

 lang/php/phpversion.mk |   4 ++--
 lang/php74/distinfo    |  10 +++++-----
 2 files changed, 7 insertions(+), 7 deletions(-)

diffs (36 lines):

diff -r 14b69d22e186 -r 3b0b227ff1e2 lang/php/phpversion.mk
--- a/lang/php/phpversion.mk    Sun Mar 08 10:19:04 2020 +0000
+++ b/lang/php/phpversion.mk    Sun Mar 08 10:24:19 2020 +0000
@@ -1,4 +1,4 @@
-# $NetBSD: phpversion.mk,v 1.283.4.4 2020/03/08 10:19:04 bsiegert Exp $
+# $NetBSD: phpversion.mk,v 1.283.4.5 2020/03/08 10:24:19 bsiegert Exp $
 #
 # This file selects a PHP version, based on the user's preferences and
 # the installed packages. It does not add a dependency on the PHP
@@ -90,7 +90,7 @@
 PHP56_VERSION= 5.6.40
 PHP72_VERSION= 7.2.27
 PHP73_VERSION= 7.3.15
-PHP74_VERSION= 7.4.2
+PHP74_VERSION= 7.4.3
 
 # Define initial release of major version.
 PHP56_RELDATE= 20140828
diff -r 14b69d22e186 -r 3b0b227ff1e2 lang/php74/distinfo
--- a/lang/php74/distinfo       Sun Mar 08 10:19:04 2020 +0000
+++ b/lang/php74/distinfo       Sun Mar 08 10:24:19 2020 +0000
@@ -1,9 +1,9 @@
-$NetBSD: distinfo,v 1.3.4.1 2020/01/29 13:34:46 bsiegert Exp $
+$NetBSD: distinfo,v 1.3.4.2 2020/03/08 10:24:19 bsiegert Exp $
 
-SHA1 (php-7.4.2.tar.xz) = 5267cfa7164f37228f23f96b4f048f0ba8f5c741
-RMD160 (php-7.4.2.tar.xz) = cec26ddb5de3517ff492e4211e306638da163fa2
-SHA512 (php-7.4.2.tar.xz) = e8d4b300d71e48a740b4cd96bf100206615a352bf77822dfe4a289b93738e3419f1371f2b1ec2eb9c9c4b9c87eac69c866a4c51a821e0f5b07a2fa3b0eb8d89b
-Size (php-7.4.2.tar.xz) = 10252304 bytes
+SHA1 (php-7.4.3.tar.xz) = 1f314d52a63ef5d68f8f44a224759b24885cce17
+RMD160 (php-7.4.3.tar.xz) = 38ca55bdecc8e6b2880297f6527408847460e3ea
+SHA512 (php-7.4.3.tar.xz) = 121f2870bbce99f8ab2d42655a9bf6aed1dc37f3c91c238bc37f448543595d55358c2d023f2d3e08c81b1b21d47be9c2d47ef7a2e776c8ac8ac34482b63e5bf3
+Size (php-7.4.3.tar.xz) = 10261432 bytes
 SHA1 (patch-configure) = 5e9c9c06f6d819d5ba2832d648f41363f40f3108
 SHA1 (patch-disable-filter-url) = 0a2c19c18f089448a8d842e99738b292ab9e5640
 SHA1 (patch-ext_phar_Makefile.frag) = 53ea5c58b0bc27d236118d5750a74b1cba43e5dd



Home | Main Index | Thread Index | Old Index