summaryrefslogtreecommitdiff
path: root/lang/php
diff options
context:
space:
mode:
authortaca <taca>2015-09-06 12:27:43 +0000
committertaca <taca>2015-09-06 12:27:43 +0000
commit55e5844f17cca48216272c5bba7425351e45bda6 (patch)
tree7538da921b75e4dc6f0fbb8b3f8a6c5e40fa6354 /lang/php
parent12a35824ebc34ea484efb3221dc0a828230fe84a (diff)
downloadpkgsrc-55e5844f17cca48216272c5bba7425351e45bda6.tar.gz
Update php55 to 5.6.13 including security fixes.
03 Sep 2015, PHP 5.6.13 - Core: . Fixed bug #69900 (Too long timeout on pipes). (Anatol) . Fixed bug #69487 (SAPI may truncate POST data). (cmb) . Fixed bug #70198 (Checking liveness does not work as expected). (Shafreeck Sea, Anatol Belski) . Fixed bug #70172 (Use After Free Vulnerability in unserialize()). (Stas) . Fixed bug #70219 (Use after free vulnerability in session deserializer). (taoguangchen at icloud dot com) - CLI server: . Fixed bug #66606 (Sets HTTP_CONTENT_TYPE but not CONTENT_TYPE). (wusuopu, cmb) . Fixed bug #70264 (CLI server directory traversal). (cmb) - Date: . Fixed bug #70266 (DateInterval::__construct.interval_spec is not supposed to be optional). (cmb) . Fixed bug #70277 (new DateTimeZone($foo) is ignoring text after null byte). (cmb) - EXIF: . Fixed bug #70385 (Buffer over-read in exif_read_data with TIFF IFD tag byte value of 32 bytes). (Stas) - hash: . Fixed bug #70312 (HAVAL gives wrong hashes in specific cases). (letsgolee at naver dot com) - MCrypt: . Fixed bug #69833 (mcrypt fd caching not working). (Anatol) - Opcache: . Fixed bug #70237 (Empty while and do-while segmentation fault with opcode on CLI enabled). (Dmitry, Laruence) - PCRE: . Fixed bug #70232 (Incorrect bump-along behavior with \K and empty string match). (cmb) . Fixed bug #70345 (Multiple vulnerabilities related to PCRE functions). (Anatol Belski) - SOAP: . Fixed bug #70388 (SOAP serialize_function_call() type confusion / RCE). (Stas) - SPL: . Fixed bug #70290 (Null pointer deref (segfault) in spl_autoload via ob_start). (hugh at allthethings dot co dot nz) . Fixed bug #70303 (Incorrect constructor reflection for ArrayObject). (cmb) . Fixed bug #70365 (Use-after-free vulnerability in unserialize() with SplObjectStorage). (taoguangchen at icloud dot com) . Fixed bug #70366 (Use-after-free vulnerability in unserialize() with SplDoublyLinkedList). (taoguangchen at icloud dot com) - Standard: . Fixed bug #70052 (getimagesize() fails for very large and very small WBMP). (cmb) . Fixed bug #70157 (parse_ini_string() segmentation fault with INI_SCANNER_TYPED). (Tjerk) - XSLT: . Fixed bug #69782 (NULL pointer dereference). (Stas) - ZIP: . Fixed bug #70350 (ZipArchive::extractTo allows for directory traversal when creating directories). (neal at fb dot com)
Diffstat (limited to 'lang/php')
-rw-r--r--lang/php/phpversion.mk4
1 files changed, 2 insertions, 2 deletions
diff --git a/lang/php/phpversion.mk b/lang/php/phpversion.mk
index c3ec84f9d6c..dc9d7e2fdd6 100644
--- a/lang/php/phpversion.mk
+++ b/lang/php/phpversion.mk
@@ -1,4 +1,4 @@
-# $NetBSD: phpversion.mk,v 1.110 2015/09/06 12:26:37 taca Exp $
+# $NetBSD: phpversion.mk,v 1.111 2015/09/06 12:27:43 taca Exp $
#
# This file selects a PHP version, based on the user's preferences and
# the installed packages. It does not add a dependency on the PHP
@@ -83,7 +83,7 @@ PHPVERSION_MK= defined
# Define each PHP's version.
PHP54_VERSION= 5.4.45
PHP55_VERSION= 5.5.29
-PHP56_VERSION= 5.6.12
+PHP56_VERSION= 5.6.13
# Define initial release of major version.
PHP54_RELDATE= 20120301