Fri Aug 16 00:38:13 2013 UTC ()
Since openssl's security problem has assigned CVE-2013-4248, update comment
in the patch file.


(taca)
diff -r1.67 -r1.68 pkgsrc/lang/php53/distinfo
diff -r1.1 -r1.2 pkgsrc/lang/php53/patches/patch-ext_openssl_openssl.c

cvs diff -r1.67 -r1.68 pkgsrc/lang/php53/Attic/distinfo (expand / switch to unified diff)

--- pkgsrc/lang/php53/Attic/distinfo 2013/08/14 15:42:56 1.67
+++ pkgsrc/lang/php53/Attic/distinfo 2013/08/16 00:38:13 1.68
@@ -1,24 +1,24 @@ @@ -1,24 +1,24 @@
1$NetBSD: distinfo,v 1.67 2013/08/14 15:42:56 taca Exp $ 1$NetBSD: distinfo,v 1.68 2013/08/16 00:38:13 taca Exp $
2 2
3SHA1 (php-5.3.27.tar.bz2) = 4f95682940ebe1bc1a93812d593460625a2aae64 3SHA1 (php-5.3.27.tar.bz2) = 4f95682940ebe1bc1a93812d593460625a2aae64
4RMD160 (php-5.3.27.tar.bz2) = c2887004859f32b25229ffe52d86270c8de194b7 4RMD160 (php-5.3.27.tar.bz2) = c2887004859f32b25229ffe52d86270c8de194b7
5Size (php-5.3.27.tar.bz2) = 11432791 bytes 5Size (php-5.3.27.tar.bz2) = 11432791 bytes
6SHA1 (suhosin-patch-5.3.25-0.9.10.patch.bz2) = ce5883b05daf91e8a44fffbfa4d3989ac3311dd1 6SHA1 (suhosin-patch-5.3.25-0.9.10.patch.bz2) = ce5883b05daf91e8a44fffbfa4d3989ac3311dd1
7RMD160 (suhosin-patch-5.3.25-0.9.10.patch.bz2) = 6c4d0cfe070802481121be465b66d3cefe44da83 7RMD160 (suhosin-patch-5.3.25-0.9.10.patch.bz2) = 6c4d0cfe070802481121be465b66d3cefe44da83
8Size (suhosin-patch-5.3.25-0.9.10.patch.bz2) = 32447 bytes 8Size (suhosin-patch-5.3.25-0.9.10.patch.bz2) = 32447 bytes
9SHA1 (patch-aa) = fd930d0d9b1c60e8c7c514cfb6864b61ce4d158d 9SHA1 (patch-aa) = fd930d0d9b1c60e8c7c514cfb6864b61ce4d158d
10SHA1 (patch-ab) = 5e8f0b91426656cb7f9272d17586ce40ab0fb547 10SHA1 (patch-ab) = 5e8f0b91426656cb7f9272d17586ce40ab0fb547
11SHA1 (patch-ac) = e8a7218d74f2f4093acca2160693c9a245e4cfc7 11SHA1 (patch-ac) = e8a7218d74f2f4093acca2160693c9a245e4cfc7
12SHA1 (patch-ad) = 6b42868f41335ddfa5a8c1e982819166b05e4ad2 12SHA1 (patch-ad) = 6b42868f41335ddfa5a8c1e982819166b05e4ad2
13SHA1 (patch-ae) = 3a354cb5c1253eb375041d8ee8549c2f663e6c74 13SHA1 (patch-ae) = 3a354cb5c1253eb375041d8ee8549c2f663e6c74
14SHA1 (patch-af) = 4f5aac4c52ce576f4489cb1f06fdb672745a8fdb 14SHA1 (patch-af) = 4f5aac4c52ce576f4489cb1f06fdb672745a8fdb
15SHA1 (patch-ag) = 84af84bc1144ac8a1fce931edcedd4a3ad0f2fda 15SHA1 (patch-ag) = 84af84bc1144ac8a1fce931edcedd4a3ad0f2fda
16SHA1 (patch-ah) = 697156508da2d837a1ea1a41f036eab4fb87e94b 16SHA1 (patch-ah) = 697156508da2d837a1ea1a41f036eab4fb87e94b
17SHA1 (patch-ai) = 9659f73eef1b4fcca9b844bdaa785ac6d5e582a1 17SHA1 (patch-ai) = 9659f73eef1b4fcca9b844bdaa785ac6d5e582a1
18SHA1 (patch-aj) = 181658ae523bd60f67750566711fc078b49191b7 18SHA1 (patch-aj) = 181658ae523bd60f67750566711fc078b49191b7
19SHA1 (patch-al) = fe534d7d50a529e3c7d0ffed76afdb70bb55a521 19SHA1 (patch-al) = fe534d7d50a529e3c7d0ffed76afdb70bb55a521
20SHA1 (patch-ext_openssl_openssl.c) = 1018d60764162ef663089e94d1e133e097f4534c 20SHA1 (patch-ext_openssl_openssl.c) = f45f4322ac875db7b0bb86efb7cfda1f659ac6cc
21SHA1 (patch-ext_standard_basic__functions.c) = 017fd25e646af4d7eb2a0bd13b3c8da34eaee8c5 21SHA1 (patch-ext_standard_basic__functions.c) = 017fd25e646af4d7eb2a0bd13b3c8da34eaee8c5
22SHA1 (patch-main_streams_cast.c) = d68b69c9418a8780b1610b8755487771f7c46a5a 22SHA1 (patch-main_streams_cast.c) = d68b69c9418a8780b1610b8755487771f7c46a5a
23SHA1 (patch-php__mssql.c) = 524c4e5d7ede0e503049bf1febec58e0c4a29aa4 23SHA1 (patch-php__mssql.c) = 524c4e5d7ede0e503049bf1febec58e0c4a29aa4
24SHA1 (patch-sapi_fpm_php-fpm.conf.in) = 86137a37e74badf99c46d1ba7ca5d85f42bedfce 24SHA1 (patch-sapi_fpm_php-fpm.conf.in) = 86137a37e74badf99c46d1ba7ca5d85f42bedfce

cvs diff -r1.1 -r1.2 pkgsrc/lang/php53/patches/Attic/patch-ext_openssl_openssl.c (expand / switch to unified diff)

--- pkgsrc/lang/php53/patches/Attic/patch-ext_openssl_openssl.c 2013/08/14 15:42:56 1.1
+++ pkgsrc/lang/php53/patches/Attic/patch-ext_openssl_openssl.c 2013/08/16 00:38:13 1.2
@@ -1,16 +1,16 @@ @@ -1,16 +1,16 @@
1$NetBSD: patch-ext_openssl_openssl.c,v 1.1 2013/08/14 15:42:56 taca Exp $ 1$NetBSD: patch-ext_openssl_openssl.c,v 1.2 2013/08/16 00:38:13 taca Exp $
2 2
3Fix for CVE-2013-4073. 3Fix for CVE-2013-4248.
4 4
5--- ext/openssl/openssl.c.orig 2013-07-10 17:43:08.000000000 +0000 5--- ext/openssl/openssl.c.orig 2013-07-10 17:43:08.000000000 +0000
6+++ ext/openssl/openssl.c 6+++ ext/openssl/openssl.c
7@@ -1326,6 +1326,75 @@ PHP_FUNCTION(openssl_x509_check_private_ 7@@ -1326,6 +1326,75 @@ PHP_FUNCTION(openssl_x509_check_private_
8 } 8 }
9 /* }}} */ 9 /* }}} */
10  10
11+ 11+
12+/* Special handling of subjectAltName, see CVE-2013-4073 12+/* Special handling of subjectAltName, see CVE-2013-4073
13+ * Christian Heimes 13+ * Christian Heimes
14+ */ 14+ */
15+ 15+
16+static int openssl_x509v3_subjectAltName(BIO *bio, X509_EXTENSION *extension) 16+static int openssl_x509v3_subjectAltName(BIO *bio, X509_EXTENSION *extension)