diff options
author | cube <cube@pkgsrc.org> | 2006-04-14 13:47:29 +0000 |
---|---|---|
committer | cube <cube@pkgsrc.org> | 2006-04-14 13:47:29 +0000 |
commit | 1050521edeabb290be83f049e345131e0691b09e (patch) | |
tree | 0e8ecb846aaa0b1396f051d698b887b75658a2b3 /www/php4 | |
parent | 018313ec9e5caf05c3b1ac4205b7be31589d4edb (diff) | |
download | pkgsrc-1050521edeabb290be83f049e345131e0691b09e.tar.gz |
PHP4/5 security changes... They're not critical issues; secunia classes
them between "not critical" and "less critical".
Fix CVE-2006-0996, CVE-2006-1494, CVE-2006-1608, CVE-2006-1490.
See:
http://secunia.com/advisories/19383/
http://secunia.com/advisories/19599/
Patches were extracted from CVS. I had to translate the one for
CVE-2006-1608 on php4 because it has not made its way to the php4.4 branch
(I don't know why; I can confirm it fixes the issue).
While here, add PATCHDIR to the list of variables php5's Makefile.php
defines. That way, ap-php gets patched too...
Diffstat (limited to 'www/php4')
-rw-r--r-- | www/php4/Makefile | 3 | ||||
-rw-r--r-- | www/php4/distinfo | 5 |
2 files changed, 6 insertions, 2 deletions
diff --git a/www/php4/Makefile b/www/php4/Makefile index 43b27618645..d1186b254e2 100644 --- a/www/php4/Makefile +++ b/www/php4/Makefile @@ -1,6 +1,7 @@ -# $NetBSD: Makefile,v 1.62 2006/03/03 07:11:34 cube Exp $ +# $NetBSD: Makefile,v 1.63 2006/04/14 13:47:30 cube Exp $ PKGNAME= php-${PHP_BASE_VERS} +PKGREVISION= 1 CATEGORIES+= lang COMMENT= HTML-embedded scripting language diff --git a/www/php4/distinfo b/www/php4/distinfo index cc1e599a835..d0c3fdb3447 100644 --- a/www/php4/distinfo +++ b/www/php4/distinfo @@ -1,4 +1,4 @@ -$NetBSD: distinfo,v 1.51 2006/03/06 15:57:58 cube Exp $ +$NetBSD: distinfo,v 1.52 2006/04/14 13:47:30 cube Exp $ SHA1 (php-4.4.2.tar.bz2) = 88f2e9efff0add8d8e3034d4ce3a948429b88756 RMD160 (php-4.4.2.tar.bz2) = cbef0fa4e233529422bc0944dcfb79d866013f5e @@ -13,3 +13,6 @@ SHA1 (patch-ak) = 1f9fbe26c7329e1d18eec053499ee2d574b5b970 SHA1 (patch-al) = 28ad9006b387e2b9984ad49beea21c9d46e63b46 SHA1 (patch-ao) = cd30bbff10f1d045c829f72d94304c9dcf202fc6 SHA1 (patch-ap) = 2f852abd1e9d0f089add18b2eade2831253ad00e +SHA1 (patch-aq) = 00f410eb61624aee0c68d2fd6802a6be7adb373e +SHA1 (patch-ar) = 5606c1ec5a7afaeda2e3cc7879cc0caa4f86ca68 +SHA1 (patch-as) = 7987c293d2290aa5e68fba87d0aa759797ace40d |