Subject: CVS commit: [pkgsrc-2014Q3] pkgsrc/lang
From: Matthias Scheler
Date: 2014-10-25 16:08:57
Message id: 20141025140857.23B0998@cvs.netbsd.org

Log Message:
Pullup ticket #4525 - requested by taca
lang/php54: security update

Revisions pulled up:
- lang/php/phpversion.mk                                        1.75
- lang/php54/distinfo                                           1.48

---
   Module Name:	pkgsrc
   Committed By:	taca
   Date:		Sat Oct 18 14:29:04 UTC 2014

   Modified Files:
   	pkgsrc/lang/php: phpversion.mk
   	pkgsrc/lang/php54: distinfo

   Log Message:
   Update to php54 5.4.34.

   16 Oct 2014, PHP 5.4.34

   - Fileinfo:
     . Fixed bug #66242 (libmagic: don't assume char is signed). (ArdB)

   - Core:
     . Fixed bug #67985 (Incorrect last used array index copied to new array after
       unset). (Tjerk)
     . Fixed bug #68044 (Integer overflow in unserialize() (32-bits only)).
       (CVE-2014-3669) (Stas)

   - cURL:
     . Fixed bug #68089 (NULL byte injection - cURL lib). (Stas)

   - EXIF:
     . Fixed bug #68113 (Heap corruption in exif_thumbnail()). (CVE-2014-3670)
       (Stas)

   - OpenSSL:
     . Reverted fixes for bug #41631, due to regressions. (Stas)

   - XMLRPC:
     . Fixed bug #68027 (Global buffer overflow in mkgmtime() function).
       (CVE-2014-3668) (Stas)

Files:
RevisionActionfile
1.47.2.1modifypkgsrc/lang/php54/distinfo