﻿id	summary	reporter	owner	description	type	status	priority	milestone	component	version	severity	resolution	keywords	cc
3203	PHP-5.3.5	Randy McMurchy	blfs-book@…	"Version increment to 5.3.4

http://us2.php.net/

Quoted from the above URL:
{{{
Security Enhancements and Fixes in PHP 5.3.4:

    * Fixed crash in zip extract method (possible CWE-170).
    * Paths with NULL in them (foo\0bar.txt) are now considered as invalid (CVE-2006-7243).
    * Fixed a possible double free in imap extension (Identified by Mateusz Kocielski). (CVE-2010-4150).
    * Fixed NULL pointer dereference in ZipArchive::getArchiveComment. (CVE-2010-3709).
    * Fixed possible flaw in open_basedir (CVE-2010-3436).
    * Fixed MOPS-2010-24, fix string validation. (CVE-2010-2950).
    * Fixed symbolic resolution support when the target is a DFS share.
    * Fixed bug #52929 (Segfault in filter_var with FILTER_VALIDATE_EMAIL with large amount of data) (CVE-2010-3710).
}}}
"	task	closed	high		BOOK	SVN	high	fixed		
