--- - branch: pkgsrc-2014Q1 date: Mon Jun 2 15:33:45 UTC 2014 files: - new: 1.58.2.2 old: 1.58.2.1 path: pkgsrc/lang/php/phpversion.mk pathrev: pkgsrc/lang/php/phpversion.mk@1.58.2.2 type: modified - new: 1.2.6.1 old: '1.2' path: pkgsrc/lang/php55/Makefile.php pathrev: pkgsrc/lang/php55/Makefile.php@1.2.6.1 type: modified - new: 1.17.2.2 old: 1.17.2.1 path: pkgsrc/lang/php55/distinfo pathrev: pkgsrc/lang/php55/distinfo@1.17.2.2 type: modified id: 20140602T153345Z.c2f6182cbc815873a425811f4e72f8392406c609 log: "Pullup ticket #4427 - requested by taca\nlang/php55: security update\n\nRevisions pulled up:\n- lang/php/phpversion.mk 1.63\n- lang/php55/Makefile.php 1.3\n- lang/php55/distinfo \ 1.22\n\n---\n Module Name:\tpkgsrc\n \ Committed By:\ttaca\n Date:\t\tSat May 31 04:26:40 UTC 2014\n\n Modified Files:\n \tpkgsrc/lang/php: phpversion.mk\n \tpkgsrc/lang/php55: Makefile.php distinfo\n\n Log Message:\n Update php55 to 5.5.13, contains fix for CVE-2014-0237 and CVE-2014-0238.\n\n 29 May 2014, PHP 5.5.13\n\n - CLI server:\n . Fixed bug #67079 (Missing MIME types for XML/XSL files). (Anatol)\n\n - COM:\n . Fixed bug #66431 (Special Character via COM Interface (CP_UTF8)). (Anatol)\n\n \ - Core:\n . Fixed bug #65701 (copy() doesn't work when destination filename is created\n by tempnam()). (Boro Sitnikovski)\n . Fixed bug #67072 (Echoing unserialized \"SplFileObject\" crash). (Anatol)\n . Fixed bug #67245 (usage of memcpy() with overlapping src and dst in\n zend_exceptions.c). (Bob)\n . Fixed bug #67247 (spl_fixedarray_resize integer overflow). (Stas)\n \ . Fixed bug #67249 (printf out-of-bounds read). (Stas)\n . Fixed bug #67250 (iptcparse out-of-bounds read). (Stas)\n . Fixed bug #67252 (convert_uudecode out-of-bounds read). (Stas)\n\n - Curl:\n . Fixed bug #64247 (CURLOPT_INFILE doesn't allow reset). (Mike)\n\n - Date:\n . Fixed bug #67118 (DateTime constructor crash with invalid data). (Anatol)\n . Fixed bug #67251 (date_parse_from_format out-of-bounds read). (Stas)\n . Fixed bug #67253 (timelib_meridian_with_check out-of-bounds read). (Stas)\n\n - DOM:\n . Fixed bug #67081 (DOMDocumentType->internalSubset returns entire DOCTYPE tag,\n not only the subset). (Anatol)\n\n - Fileinfo:\n \ . Fixed bug #66307 (Fileinfo crashes with powerpoint files). (Anatol)\n . Fixed bug #67327 (fileinfo: CDF infinite loop in nelements DoS) (CVE-2014-0238).\n \ . Fixed bug #67328 (fileinfo: fileinfo: numerous file_printf calls resulting in\n performance degradation) (CVE-2014-0237).\n\n - FPM:\n . Fixed bug #66908 (php-fpm reload leaks epoll_create() file descriptor).\n (Julio Pintos)\n\n - GD:\n . Fixed bug #67248 (imageaffinematrixget missing check of parameters). (Stas)\n\n - PCRE:\n . Fixed bug #67238 (Ungreedy and min/max quantifier bug, applied patch\n from the upstream). (Anatol)\n\n - Phar:\n \ . Fix bug #64498 ($phar->buildFromDirectory can't compress file with an accent\n \ in its name). (PR #588)\n" module: pkgsrc subject: 'CVS commit: [pkgsrc-2014Q1] pkgsrc/lang' unixtime: '1401723225' user: tron