Path to this page:
Subject: CVS commit: [pkgsrc-2022Q3] pkgsrc/lang
From: Benny Siegert
Date: 2022-11-05 20:21:29
Message id: 20221105192129.8820BFA90@cvs.NetBSD.org
Log Message:
Pullup ticket #6700 - requested by taca
lang/php80: security fix
Revisions pulled up:
- lang/php/phpversion.mk 1.379
- lang/php80/distinfo 1.26
---
Module Name: pkgsrc
Committed By: taca
Date: Sun Oct 30 10:18:35 UTC 2022
Modified Files:
pkgsrc/lang/php: phpversion.mk
pkgsrc/lang/php80: distinfo
Log Message:
lang/php80: update to 8.0.25
8.0.25 (2022-10-27)
- GD:
. Fixed bug #81739: OOB read due to insufficient input validation in
imageloadfont(). (CVE-2022-31630) (cmb)
- Hash:
. Fixed bug #81738: buffer overflow in hash_update() on long parameter.
(CVE-2022-37454) (nicky at mouha dot be)
- Session:
. Fixed bug GH-9583 (session_create_id() fails with user defined save handler
that doesn't have a validateId() method). (Girgias)
- Streams:
. Fixed bug GH-9590 (stream_select does not abort upon exception or empty
valid fd set). (Arnaud)
Files: