2014-11-21 15:13:51 +01:00
|
|
|
$NetBSD: distinfo,v 1.78 2014/11/21 14:13:51 joerg Exp $
|
2010-03-16 16:31:58 +01:00
|
|
|
|
Update php53 to 5.3.29, final PHP 5.3 release.
14 Aug 2014, PHP 5.3.29
- Core:
. Fixed bug #66127 (Segmentation fault with ArrayObject unset). (Stas)
. Fixed bug #67247 (spl_fixedarray_resize integer overflow). (Stas)
. Fixed bug #67249 (printf out-of-bounds read). (Stas)
. Fixed bug #67250 (iptcparse out-of-bounds read). (Stas)
. Fixed bug #67252 (convert_uudecode out-of-bounds read). (Stas)
. Fixed bug #67359 (Segfault in recursiveDirectoryIterator). (Laruence)
. Fixed bug #67390 (insecure temporary file use in the configure script).
(Remi) (CVE-2014-3981)
. Fixed bug #67399 (putenv with empty variable may lead to crash). (Stas)
. Fixed bug #67492 (unserialize() SPL ArrayObject / SPLObjectStorage Type
Confusion) (CVE-2014-3515). (Stefan Esser)
. Fixed bug #67498 (phpinfo() Type Confusion Information Leak Vulnerability).
(Stefan Esser)
- COM:
. Fixed missing type checks in com_event_sink (Yussuf Khalil, Stas).
- Date:
. Fixed bug #66060 (Heap buffer over-read in DateInterval). (CVE-2013-6712)
(Remi)
. Fixed bug #67251 (date_parse_from_format out-of-bounds read). (Stas)
. Fixed bug #67253 (timelib_meridian_with_check out-of-bounds read). (Stas)
- Exif:
. Fixed bug #65873 (Integer overflow in exif_read_data()). (Stas)
- Fileinfo:
. Fixed bug #66307 (Fileinfo crashes with powerpoint files). (Anatol)
. Fixed bug #67326 (fileinfo: cdf_read_short_sector insufficient boundary
check). (CVE-2014-0207)
. Fixed bug #67327 (fileinfo: CDF infinite loop in nelements DoS).
(CVE-2014-0238)
. Fixed bug #67328 (fileinfo: fileinfo: numerous file_printf calls resulting
in performance degradation). (CVE-2014-0237)
. Fixed bug #67410 (fileinfo: mconvert incorrect handling of truncated pascal
string size). (Francisco Alonso, Jan Kaluza, Remi)
. Fixed bug #67411 (fileinfo: cdf_check_stream_offset insufficient boundary
check). (Francisco Alonso, Jan Kaluza, Remi)
. Fixed bug #67412 (fileinfo: cdf_count_chain insufficient boundary check).
(Francisco Alonso, Jan Kaluza, Remi)
. Fixed bug #67413 (fileinfo: cdf_read_property_info insufficient boundary
check). (Francisco Alonso, Jan Kaluza, Remi)
- Intl:
. Fixed bug #67349 (Locale::parseLocale Double Free). (Stas)
. Fixed bug #67397 (Buffer overflow in locale_get_display_name and
uloc_getDisplayName (libicu 4.8.1)). (Stas)
- Network:
. Fixed bug #67432 (Fix potential segfault in dns_check_record()).
(CVE-2014-4049). (Sara)
- OpenSSL:
. Fixed missing type checks in OpenSSL options (Yussuf Khalil, Stas).
- Session:
. Fixed missing type checks in php_session_create_id (Yussuf Khalil, Stas).
2014-08-15 18:09:16 +02:00
|
|
|
SHA1 (php-5.3.29.tar.bz2) = 6e9e492c6d5853d063ddb9a4dbef60b8e5d87444
|
|
|
|
RMD160 (php-5.3.29.tar.bz2) = e57beb4fdda41bca81b5856161bc97f3c5e3e9da
|
|
|
|
Size (php-5.3.29.tar.bz2) = 11396771 bytes
|
|
|
|
SHA1 (suhosin-patch-5.3.29-0.9.10.patch.bz2) = b81a9b24f758cef4319759e09d011c7a350232a7
|
|
|
|
RMD160 (suhosin-patch-5.3.29-0.9.10.patch.bz2) = 7685501fd40426068c58dfbe844d12f1af299d80
|
|
|
|
Size (suhosin-patch-5.3.29-0.9.10.patch.bz2) = 32437 bytes
|
2014-11-21 15:13:51 +01:00
|
|
|
SHA1 (patch-Zend_zend__ini.h) = dc019ec8f30c8525f6ba24f771f38e4fea23dd30
|
2013-07-12 02:07:04 +02:00
|
|
|
SHA1 (patch-aa) = fd930d0d9b1c60e8c7c514cfb6864b61ce4d158d
|
2014-03-12 20:52:04 +01:00
|
|
|
SHA1 (patch-ab) = 36789fea71e316d5c4358e597df1928d94f8ea6a
|
2014-03-23 10:55:59 +01:00
|
|
|
SHA1 (patch-ac) = b194eaed2d81877166b13db58b37c5ddff0210a6
|
2014-03-12 20:52:04 +01:00
|
|
|
SHA1 (patch-aclocal.m4) = 473b76c8575331604d30e24a08c527e15b166778
|
2013-07-12 02:07:04 +02:00
|
|
|
SHA1 (patch-ad) = 6b42868f41335ddfa5a8c1e982819166b05e4ad2
|
|
|
|
SHA1 (patch-ae) = 3a354cb5c1253eb375041d8ee8549c2f663e6c74
|
|
|
|
SHA1 (patch-af) = 4f5aac4c52ce576f4489cb1f06fdb672745a8fdb
|
|
|
|
SHA1 (patch-ag) = 84af84bc1144ac8a1fce931edcedd4a3ad0f2fda
|
|
|
|
SHA1 (patch-ah) = 697156508da2d837a1ea1a41f036eab4fb87e94b
|
|
|
|
SHA1 (patch-ai) = 9659f73eef1b4fcca9b844bdaa785ac6d5e582a1
|
|
|
|
SHA1 (patch-aj) = 181658ae523bd60f67750566711fc078b49191b7
|
|
|
|
SHA1 (patch-al) = fe534d7d50a529e3c7d0ffed76afdb70bb55a521
|
2014-03-12 20:52:04 +01:00
|
|
|
SHA1 (patch-build_libtool.m4) = 6835b90ebd34739440c8eb94ed19ebacdf2ba6a5
|
2014-10-23 18:18:47 +02:00
|
|
|
SHA1 (patch-ext_exif_exif.c) = c78249a8ffae00bbdece2af9058e4ecf11cb0fa6
|
2014-05-11 13:20:47 +02:00
|
|
|
SHA1 (patch-ext_gd_libgd_gdxpm.c) = 9a175417fad9ac23037a24122f8d1258b9eebbcb
|
2013-07-12 02:07:04 +02:00
|
|
|
SHA1 (patch-ext_standard_basic__functions.c) = 017fd25e646af4d7eb2a0bd13b3c8da34eaee8c5
|
2014-10-23 18:18:47 +02:00
|
|
|
SHA1 (patch-ext_standard_var__unserializer.c) = eb590c1d5349320e45bbdaf97c875b11eb275cfb
|
|
|
|
SHA1 (patch-ext_standard_var__unserializer.re) = 23478a8a26c2c106efc4f0727743e2fffdebaf54
|
|
|
|
SHA1 (patch-ext_xmlrpc_libxmlrpc_xmlrpc.c) = 9fd4004b4d94fcbf8d4104027018b46794bee127
|
2014-11-21 15:13:51 +01:00
|
|
|
SHA1 (patch-main_php.h) = 3f206a423a906932cb7f4662188580a9ce9fd79d
|
2013-07-12 02:07:04 +02:00
|
|
|
SHA1 (patch-main_streams_cast.c) = d68b69c9418a8780b1610b8755487771f7c46a5a
|
|
|
|
SHA1 (patch-php__mssql.c) = 524c4e5d7ede0e503049bf1febec58e0c4a29aa4
|
2014-06-13 16:09:34 +02:00
|
|
|
SHA1 (patch-sapi_fpm_fpm_events_port.c) = ad45bcebadf923ee8cb3f2ad4d78d21dd178a8e3
|
2013-07-12 02:07:04 +02:00
|
|
|
SHA1 (patch-sapi_fpm_php-fpm.conf.in) = 86137a37e74badf99c46d1ba7ca5d85f42bedfce
|