Subject: CVS commit: pkgsrc/lang/php5
From: Adrian Portelli
Date: 2007-06-06 21:33:13
Message id: 20070606193313.63F1921507@cvs.netbsd.org

Log Message:
Update to php-5.2.3

Security Fixes
* Fixed an integer overflow inside chunk_split() (by Gerhard Wagner, CVE-2007-2872)
* Fixed possible infinite loop in imagecreatefrompng. (by Xavier Roche, \ 
CVE-2007-2756)
* Fixed ext/filter Email Validation Vulnerability (MOPB-45 by Stefan Esser, \ 
CVE-2007-1900)
* Fixed bug #41492 (open_basedir/safe_mode bypass inside realpath()) (by bugs \ 
dot php dot net at chsc dot dk)
* Improved fix for CVE-2007-1887 to work with non-bundled sqlite2 lib.
* Added mysql_set_charset() to allow runtime altering of connection encoding.

* Upgraded bundled SQLite 3 to version 3.3.17. (Ilia)
* Fixed gd build when used with freetype 1.x (Pierre, Tony)

And a fair few bugs fixed, see: http://www.php.net/ChangeLog-5.php#5.2.3
for all the details.

Files:
RevisionActionfile
1.52modifypkgsrc/lang/php5/Makefile
1.26modifypkgsrc/lang/php5/Makefile.common
1.41modifypkgsrc/lang/php5/distinfo