Opened 13 years ago

Closed 12 years ago

Last modified 10 years ago

#3203 closed task (fixed)

PHP-5.3.5

Reported by: Randy McMurchy Owned by: blfs-book@…
Priority: high Milestone:
Component: BOOK Version: SVN
Severity: major Keywords:
Cc:

Description (last modified by Randy McMurchy)

Version increment to 5.3.4

http://us2.php.net/

Quoted from the above URL:

Security Enhancements and Fixes in PHP 5.3.4:

    * Fixed crash in zip extract method (possible CWE-170).
    * Paths with NULL in them (foo\0bar.txt) are now considered as invalid (CVE-2006-7243).
    * Fixed a possible double free in imap extension (Identified by Mateusz Kocielski). (CVE-2010-4150).
    * Fixed NULL pointer dereference in ZipArchive::getArchiveComment. (CVE-2010-3709).
    * Fixed possible flaw in open_basedir (CVE-2010-3436).
    * Fixed MOPS-2010-24, fix string validation. (CVE-2010-2950).
    * Fixed symbolic resolution support when the target is a DFS share.
    * Fixed bug #52929 (Segfault in filter_var with FILTER_VALIDATE_EMAIL with large amount of data) (CVE-2010-3710).

Change History (6)

comment:1 by Randy McMurchy, 13 years ago

Owner: changed from blfs-book@… to Randy McMurchy
Status: newassigned

comment:2 by Randy McMurchy, 13 years ago

Milestone: future6.7

Updated milestone to 6.7

comment:3 by Randy McMurchy, 13 years ago

Description: modified (diff)
Owner: changed from Randy McMurchy to blfs-book@…
Status: assignednew
Summary: PHP-5.3.3PHP-5.3.4

Updated BLFS to PHP-5.3.3. Since my installation, 5.3.4 has been released. Both versions require additional dependencies (not listed in the 5.3.3 update as it will be short-lived).

http://www.geocities.jp/kosako3/oniguruma/
http://www.acme.com/software/thttpd/
http://pi3web.sourceforge.net/pi3web/
several non-free web-servers (probably not worth mentioning)
the "lemon" parser in the "tools" subdir of the SQLite tarball

comment:4 by thomas, 13 years ago

Summary: PHP-5.3.4PHP-5.3.5

Version increment to 5.3.5

5.3.5 is out fixing some floating-point issues.

comment:5 by bdubbs@…, 12 years ago

Resolution: fixed
Status: newclosed

Updated to php-5.3.8

comment:6 by bdubbs@…, 10 years ago

Milestone: 6.7

Milestone 6.7 deleted

Note: See TracTickets for help on using tickets.