Next | Query returned 70 messages, browsing 11 to 20 | Previous

History of commit frequency

CVS Commit History:


   2018-07-30 09:17:16 by Emmanuel Dreyfus | Files touched by this commit (3)
Log message:
Fix PHP buidl on i386

The --disable-gcc-global-regs fix is not enough, we really need
GCC 6 to avoid php crashing during www/ap-ph build.
   2018-07-20 15:27:28 by Takahiro Kambe | Files touched by this commit (2) | Package updated
Log message:
lang/php70: update to 7.0.31

19 Jul 2018 PHP 7.0.31

- Exif:
  . Fixed bug #76423 (Int Overflow lead to Heap OverFlow in
    exif_thumbnail_extract of exif.c). (Stas)
  . Fixed bug #76557 (heap-buffer-overflow (READ of size 48) while reading exif
    data). (Stas)

- Win32:
  . Fixed bug #76459 (windows linkinfo lacks openbasedir check). (Anatol)
   2018-07-18 09:33:12 by Emmanuel Dreyfus | Files touched by this commit (12)
Log message:
Add pkgsrc build option disable-filter-url to disable php://filter URL

php://filter URL is a feature documented here:
http://php.net/manual/en/wrappers.php.php

Unfortunately, it allows remote control of include() behavior
beyond what many developpers expected, enabling easy dump of
PHP source files. The administrator may want to disable the
feature for security sake, and this option makes that possible.
   2018-07-16 12:58:50 by Maya Rashish | Files touched by this commit (6)
Log message:
php*: disable global regs on i386.
Fixes PR pkg/53222 that resurfaced

Remove the previous workaround to add GCC_REQD, which isn't sufficient
any more, possibly due to enabling ssp/fortify?

XXX bumping PKGREVISION might not be sufficient, for the same reason the
GCC_REQD had to be moved to Makefile.php, it affects modules too.
   2018-04-26 17:46:57 by Takahiro Kambe | Files touched by this commit (1) | Package updated
Log message:
lang/php70: update to 7.0.30

26 Apr 2018 PHP 7.0.30

- Exif:
  . Fixed bug #76130 (Heap Buffer Overflow (READ: 1786) in exif_iif_add_value).
  (Stas)

- iconv:
  . Fixed bug #76249 (stream filter convert.iconv leads to infinite loop on
    invalid sequence). (Stas)

- LDAP:
  . Fixed bug #76248 (Malicious LDAP-Server Response causes Crash). (Stas)

- Phar:
  . Fixed bug #76129 (fix for CVE-2018-5712 may not be complete). (Stas)

29 Mar 2018 PHP 7.0.29

- FPM:
  . Fixed bug #75605 (Dumpable FPM child processes allow bypassing opcache
    access controls). (Jakub Zelenka)
   2018-03-29 18:22:24 by Takahiro Kambe | Files touched by this commit (1) | Package updated
Log message:
lang/php70: update to 7.0.29

29 Mar 2018 PHP 7.0.29

- FPM:
  . Fixed bug #75605 (Dumpable FPM child processes allow bypassing opcache
    access controls). (Jakub Zelenka)

01 Mar 2018 PHP 7.0.28

- Standard:
  . Fixed bug #75981 (stack-buffer-overflow while parsing HTTP response). (Stas)
   2018-03-02 03:12:27 by Takahiro Kambe | Files touched by this commit (1) | Package updated
Log message:
lang/php70: update to 7.0.28

01 Mar 2018 PHP 7.0.28

- Standard:
  . Fixed bug #75981 (stack-buffer-overflow while parsing HTTP response). (Stas)
   2018-02-05 12:21:56 by Jonathan Perkin | Files touched by this commit (3)
Log message:
php7*: Standardise on major.minor.99 usage in buildlink3.mk

With the introduction of beta and rc releases of php7* into pkgsrc the pattern
matching is often incorrect (for example the current version of php-7.1.0rc6
breaks both <7.1.0 and >=7.1.0).  Using .99 is not ideal but does at least
avoid the confusion developers seem to be having with the pmatch ordering.
   2018-02-04 12:37:54 by Jaromir Dolecek | Files touched by this commit (1)
Log message:
adjust wording - php70 is actually on regular security fixes only support
   2018-02-04 12:35:39 by Jaromir Dolecek | Files touched by this commit (4)
Log message:
note a planned End of Life for support of PHP 5.6.x and PHP 7.0.x

Those releases will stop getting official support on Dec 31 2018 and
Dec 3 2018 respectively, and they should be removed from pkgsrc by then.

Next | Query returned 70 messages, browsing 11 to 20 | Previous