summaryrefslogtreecommitdiff
path: root/games
diff options
context:
space:
mode:
authorjlam <jlam>2002-02-28 15:07:16 +0000
committerjlam <jlam>2002-02-28 15:07:16 +0000
commit641697f5544d14f1ab845457bde66638e3228e69 (patch)
treec951f8a63bb725ec311871eed493e2e9e631db4a /games
parent1fb68beb151b1393c4ad679da0d9dacfa03dd3ba (diff)
downloadpkgsrc-641697f5544d14f1ab845457bde66638e3228e69.tar.gz
Update php3 and ap-php3 to 3.0.18nb1. Changes from version 3.0.18 are
a security fix for a file-upload bug. <===> SECURITY NOTE <===> Note that the buffer overflow fix is a major security fix. Quoting from the security advisory at: http://security.e-matters.de/advisories/012002.html "PHP supports multipart/form-data POST requests (as described in RFC1867) known as POST fileuploads. Unfourtunately there are several flaws in the php_mime_split function that could be used by an attacker to execute arbitrary code. During our research we found out that not only PHP4 but also older versions from the PHP3 tree are vulnerable.
Diffstat (limited to 'games')
0 files changed, 0 insertions, 0 deletions