Subject: CVS commit: [pkgsrc-2015Q4] pkgsrc/lang
From: Benny Siegert
Date: 2016-01-17 20:25:16
Message id: 20160117192516.CA82EFBB5@cvs.NetBSD.org

Log Message:
Pullup ticket #4892 - requested by taca
lang/php56: security fix

Revisions pulled up:
- lang/php/phpversion.mk                                        1.121
- lang/php56/distinfo                                           1.21

---
   Module Name:    pkgsrc
   Committed By:   taca
   Date:           Fri Jan  8 03:28:20 UTC 2016

   Modified Files:
           pkgsrc/lang/php: phpversion.mk
           pkgsrc/lang/php56: distinfo

   Log Message:
   Update php55 to 5.6.17, including security fix.

   07 Jan 2016, PHP 5.6.17

   - Core:
     . Fixed bug #66909 (configure fails utf8_to_mutf7 test). (Michael Orlitzky)
     . Fixed bug #70958 (Invalid opcode while using ::class as trait method
       paramater default value). (Laruence)
     . Fixed bug #70957 (self::class can not be resolved with reflection for
       abstract class). (Laruence)
     . Fixed bug #70944 (try{ } finally{} can create infinite chains of
       exceptions). (Laruence)
     . Fixed bug #61751 (SAPI build problem on AIX: Undefined symbol:
       php_register_internal_extensions). (Lior Kaplan)

   - FPM:
     . Fixed bug #70755 (fpm_log.c memory leak and buffer overflow). (Stas)

   - GD:
     . Fixed bug #70976 (Memory Read via gdImageRotateInterpolated Array Index
       Out of Bounds). (emmanuel dot law at gmail dot com).

   - Mysqlnd:
     . Fixed bug #68077 (LOAD DATA LOCAL INFILE / open_basedir restriction).
       (Laruence)

   - SOAP:
     . Fixed bug #70900 (SoapClient systematic out of memory error). (Dmitry)

   - Standard:
     . Fixed bug #70960 (ReflectionFunction for array_unique returns wrong number
       of parameters). (Laruence)

   - PDO_Firebird:
     . Fixed bug #60052 (Integer returned as a 64bit integer on X64_86). (Mariuz)

   - WDDX:
     . Fixed bug #70661 (Use After Free Vulnerability in WDDX Packet \ 
Deserialization).
       (taoguangchen at icloud dot com)
     . Fixed bug #70741 (Session WDDX Packet Deserialization Type Confusion
       Vulnerability). (taoguangchen at icloud dot com)

   - XMLRPC:
     . Fixed bug #70728 (Type Confusion Vulnerability in PHP_to_XMLRPC_worker()).
       (Julien)

Files:
RevisionActionfile
1.20.2.1modifypkgsrc/lang/php56/distinfo