Link [ pkgsrc | NetBSD | pkgsrc git mirror | PR fulltext-search | netbsd commit viewer ]


   
        usage: [branch:branch] [user:user] [path[@revision]] keyword [... [-excludekeyword [...]]] (e.g. branch:MAIN pkgtools/pkg)




switch to index mode

recent branches: MAIN (4h)  pkgsrc-2024Q1 (9d)  pkgsrc-2023Q4 (56d)  pkgsrc-2023Q2 (88d)  pkgsrc-2023Q3 (168d) 

2024-05-27 01:07:37 UTC Now

2020-10-21 19:13:42 UTC pkgsrc-2020Q3 commitmail json YAML

Pullup ticket #6333 - requested by taca
lang/php73: security update

Revisions pulled up:
- lang/php/phpversion.mk                                        1.309
- lang/php73/distinfo                                          1.27

-------------------------------------------------------------------
  Module Name: pkgsrc
  Committed By: taca
  Date: Sun Oct  4 03:06:28 UTC 2020

  Modified Files:
  pkgsrc/lang/php: phpversion.mk
  pkgsrc/lang/php73: distinfo

  Log Message:
  lang/php73: update to 7.3.23

  Update php73 package to 7.3.23.

  01 Oct 2020, PHP 7.3.23

  - Core:
    . Fixed bug #80048 (Bug #69100 has not been fixed for Windows). (cmb)
    . Fixed bug #80049 (Memleak when coercing integers to string via variadic
      argument). (Nikita)
    . Fixed bug #79699 (PHP parses encoded cookie names so malicious `__Host-`
      cookies can be sent). (CVE-2020-7070) (Stas)

  - Calendar:
    . Fixed bug #80007 (Potential type confusion in unixtojd() parameter parsing).
      (Andy Postnikov)

  - COM:
    . Fixed bug #64130 (COM obj parameters passed by reference are not updated).
      (cmb)

  - OPcache:
    . Fixed bug #80002 (calc free space for new interned string is wrong).
      (t-matsuno)
    . Fixed bug #79825 (opcache.file_cache causes SIGSEGV when custom opcode
      handlers changed). (SammyK)

  - OpenSSL:
    . Fixed bug #79601 (Wrong ciphertext/tag in AES-CCM encryption for a 12
      bytes IV). (CVE-2020-7069) (Jakub Zelenka)

  - PDO:
    . Fixed bug #80027 (Terrible performance using $query->fetch on queries with
      many bind parameters (Matteo)

  - Standard:
    . Fixed bug #79986 (str_ireplace bug with diacritics characters). (cmb)
    . Fixed bug #80077 (getmxrr test bug). (Rainer Jung)
    . Fixed bug #72941 (Modifying bucket->data by-ref has no effect any longer).
      (cmb)
    . Fixed bug #80067 (Omitting the port in bindto setting errors). (cmb)

  To generate a diff of this commit:
  cvs rdiff -u -r1.308 -r1.309 pkgsrc/lang/php/phpversion.mk
  cvs rdiff -u -r1.26 -r1.27 pkgsrc/lang/php73/distinfo

(spz)