./lang/php56, PHP Hypertext Preprocessor version 5.6

[ CVSweb ] [ Homepage ] [ RSS ] [ Required by ] [ Add to tracker ]


Branch: pkgsrc-2015Q4, Version: 5.6.19, Package name: php-5.6.19, Maintainer: pkgsrc-users

PHP is an HTML-embedded scripting language. It is modular, with
some object-oriented features. Much of its syntax is borrowed from
C, Java and Perl with a couple of unique PHP-specific features
thrown in. The language is designed to allow web developers to
write dynamically generated pages quickly.

This package provides PHP version 5.5.x.


Required to run:
[textproc/libxml2]


Package options: inet6, ssl

Master sites: (Expand)

SHA1: 725e097a795e102a72b24eda81c6511413a04db9
RMD160: 93b1b25b14154c20fa50d23ab2920b3e2bd6c39d
Filesize: 13769.959 KB

Version history: (Expand)


CVS history: (Expand)


   2016-03-08 16:37:56 by Benny Siegert | Files touched by this commit (1)
Log message:
Pullup ticket #4945 - requested by taca
lang/php56: security fix

Revisions pulled up:
- lang/php/phpversion.mk                                        1.127
- lang/php56/distinfo                                           1.24

---
   Module Name:	pkgsrc
   Committed By:	taca
   Date:		Sat Mar  5 05:18:51 UTC 2016

   Modified Files:
   	pkgsrc/lang/php: phpversion.mk
   	pkgsrc/lang/php56: distinfo

   Log message:
   Update php56 to 5.6.19 (PHP 5.6.19), including security fixes.

   03 Mar 2016, PHP 5.6.19

   - CLI server:
     . Fixed bug #71559 (Built-in HTTP server, we can download file in web by bug).
       (Johannes, Anatol)

   - CURL:
     . Fixed bug #71523 (Copied handle with new option CURLOPT_HTTPHEADER crashes
       while curl_multi_exec). (Laruence)

   - Date:
     . Fixed bug #68078 (Datetime comparisons ignore microseconds). (Willem-Jan
       Zijderveld)
     . Fixed bug #71525 (Calls to date_modify will mutate timelib_rel_time,
       causing date_date_set issues). (Sean DuBois)

   - Fileinfo:
     . Fixed bug #71434 (finfo throws notice for specific python file). (Laruence)

   - FPM:
     . Fixed bug #62172 (FPM not working with Apache httpd 2.4 balancer/fcgi
       setup). (Matt Haught, Remi)

   - Opcache:
     . Fixed bug  #71584 (Possible use-after-free of ZCG(cwd) in Zend Opcache).
       (Yussuf Khalil)

   - PDO MySQL:
     . Fixed bug #71569 (#70389 fix causes segmentation fault). (Nikita)

   - Phar:
     . Fixed bug #71498 (Out-of-Bound Read in phar_parse_zipfile()). (Stas)

   - Standard:
     . Fixed bug #70720 (strip_tags improper php code parsing). (Julien)

   - WDDX:
     . Fixed bug #71587 (Use-After-Free / Double-Free in WDDX Deserialize). (Stas)

   - XSL:
     . Fixed bug #71540 (NULL pointer dereference in xsl_ext_function_php()).
       (Stas)

   - Zip:
     . Fixed bug #71561 (NULL pointer dereference in Zip::ExtractTo). (Laruence)
   2016-02-10 21:36:47 by Benny Siegert | Files touched by this commit (1)
Log message:
Pullup ticket #4917 - requested by taca
lang/php56: security fix

Revisions pulled up:
- lang/php/phpversion.mk                                        1.124
- lang/php56/distinfo                                           1.22

---
   Module Name:	pkgsrc
   Committed By:	taca
   Date:		Sat Feb  6 07:13:02 UTC 2016

   Modified Files:
   	pkgsrc/lang/php: phpversion.mk
   	pkgsrc/lang/php56: distinfo

   Log message:
   Update php56 to 5.6.18 (PHP 5.6.18).

   04 Feb 2016, PHP 5.6.18

   - Core:
     . Fixed bug #71039 (exec functions ignore length but look for NULL termination).
       (Anatol)
     . Fixed bug #71089 (No check to duplicate zend_extension). (Remi)
     . Fixed bug #71201 (round() segfault on 64-bit builds). (Anatol)
     . Added support for new HTTP 451 code. (Julien)
     . Fixed bug #71273 (A wrong ext directory setup in php.ini leads to crash).
       (Anatol)
     . Fixed bug #71323 (Output of stream_get_meta_data can be falsified by its
       input). (Leo Gaspard)
     . Fixed bug #71459 (Integer overflow in iptcembed()). (Stas)

   - Apache2handler:
     . Fix >2G Content-Length headers in apache2handler. (Adam Harvey)

   - FTP:
     . Implemented FR #55651 (Option to ignore the returned FTP PASV address).
       (abrender at elitehosts dot com)

   - Opcache:
     . Fixed bug #71127 (Define in auto_prepend_file is overwrite). (Laruence)
     . Fixed bug #71024 (Unable to use PHP 7.0 x64 side-by-side with PHP 5.6 x32
       on the same server). (Anatol)

   - Phar:
     . Fixed bug #71354 (Heap corruption in tar/zip/phar parser). (Stas)
     . Fixed bug #71391 (NULL Pointer Dereference in phar_tar_setupmetadata()).
       (Stas)
     . Fixed bug #71488 (Stack overflow when decompressing tar archives). (Stas)

   - Session:
     . Fixed bug #69111 (Crash in SessionHandler::read()). (Anatol)

   - SOAP:
     . Fixed bug #70979 (crash with bad soap request). (Anatol)

   - SPL:
     . Fixed bug #71204 (segfault if clean spl_autoload_funcs while autoloading).
       (Laruence)

   - WDDX:
     . Fixed bug #71335 (Type Confusion in WDDX Packet Deserialization). (Stas)
   2016-01-17 20:25:16 by Benny Siegert | Files touched by this commit (1)
Log message:
Pullup ticket #4892 - requested by taca
lang/php56: security fix

Revisions pulled up:
- lang/php/phpversion.mk                                        1.121
- lang/php56/distinfo                                           1.21

---
   Module Name:    pkgsrc
   Committed By:   taca
   Date:           Fri Jan  8 03:28:20 UTC 2016

   Modified Files:
           pkgsrc/lang/php: phpversion.mk
           pkgsrc/lang/php56: distinfo

   Log message:
   Update php55 to 5.6.17, including security fix.

   07 Jan 2016, PHP 5.6.17

   - Core:
     . Fixed bug #66909 (configure fails utf8_to_mutf7 test). (Michael Orlitzky)
     . Fixed bug #70958 (Invalid opcode while using ::class as trait method
       paramater default value). (Laruence)
     . Fixed bug #70957 (self::class can not be resolved with reflection for
       abstract class). (Laruence)
     . Fixed bug #70944 (try{ } finally{} can create infinite chains of
       exceptions). (Laruence)
     . Fixed bug #61751 (SAPI build problem on AIX: Undefined symbol:
       php_register_internal_extensions). (Lior Kaplan)

   - FPM:
     . Fixed bug #70755 (fpm_log.c memory leak and buffer overflow). (Stas)

   - GD:
     . Fixed bug #70976 (Memory Read via gdImageRotateInterpolated Array Index
       Out of Bounds). (emmanuel dot law at gmail dot com).

   - Mysqlnd:
     . Fixed bug #68077 (LOAD DATA LOCAL INFILE / open_basedir restriction).
       (Laruence)

   - SOAP:
     . Fixed bug #70900 (SoapClient systematic out of memory error). (Dmitry)

   - Standard:
     . Fixed bug #70960 (ReflectionFunction for array_unique returns wrong number
       of parameters). (Laruence)

   - PDO_Firebird:
     . Fixed bug #60052 (Integer returned as a 64bit integer on X64_86). (Mariuz)

   - WDDX:
     . Fixed bug #70661 (Use After Free Vulnerability in WDDX Packet \ 
Deserialization).
       (taoguangchen at icloud dot com)
     . Fixed bug #70741 (Session WDDX Packet Deserialization Type Confusion
       Vulnerability). (taoguangchen at icloud dot com)

   - XMLRPC:
     . Fixed bug #70728 (Type Confusion Vulnerability in PHP_to_XMLRPC_worker()).
       (Julien)