Path to this page:
Subject: CVS commit: pkgsrc/lang/php5
From: Adrian Portelli
Date: 2009-03-02 23:52:17
Message id: 20090302225217.8CE5A175D0@cvs.netbsd.org
Log Message:
The PHP development team would like to announce the immediate availability of \
PHP 5.2.9. This release focuses on improving the stability of the PHP 5.2.x \
branch with over 50 bug fixes, several of which are security related. All users \
of PHP are encouraged to upgrade to this release.
Security Enhancements and Fixes in PHP 5.2.9:
* Fixed security issue in imagerotate(), background colour isn't validated \
correctly with a non truecolour image. Reported by Hamid Ebadi, APA Laboratory \
(Fixes CVE-2008-5498). (Scott)
* Fixed a crash on extract in zip when files or directories entry names \
contain a relative path. (Pierre)
* Fixed explode() behavior with empty string to respect negative limit. (Shire)
* Fixed a segfault when malformed string is passed to json_decode(). (Scott)
Key enhancements in PHP 5.2.9 include:
* Added optional sorting type flag parameter to array_unique(). Default is \
SORT_REGULAR. (Andrei)
* Fixed bug #45996 (libxml2 2.7 causes breakage with character data in \
xml_parse()). (Rob)
* A number of fixes in the mbstring extension (Moriyoshi)
* Fixed bug #44336 (Improve pcre UTF-8 string matching performance). (frode \
at coretrek dot com, Nuno)
* Fixed bug #46699 (xml_parse crash when parser is namespace aware). (Rob)
* Fixed bug #46748 (Segfault when an SSL error has more than one error). (Scott)
* Fixed bug #46889 (Memory leak in strtotime()). (Derick)
* Fixed bug #47049 (SoapClient::__soapCall causes a segmentation fault). (Dmitry)
* Fixed bug #47165 (Possible memory corruption when passing return value by \
reference). (Dmitry)
* Fixed bug #47282 (FILTER_VALIDATE_EMAIL is marking valid email addresses \
as invalid). (Ilia)
* Fixed bug #47422 (modulus operator returns incorrect results on 64 bit \
linux). (Matt)
* Over 50 bug fixes.
Files: