aboutsummaryrefslogtreecommitdiffstats
path: root/lang
diff options
context:
space:
mode:
authorflo <flo@FreeBSD.org>2012-11-25 23:42:22 +0800
committerflo <flo@FreeBSD.org>2012-11-25 23:42:22 +0800
commit6ab84942c4479a8325ee3377220b1d22f2682ebe (patch)
tree2faa770c5da1c87173f56c0a2473f6595933bc19 /lang
parentb1005c10861e2cc0829fc6831639464ca20dd05d (diff)
downloadfreebsd-ports-gnome-6ab84942c4479a8325ee3377220b1d22f2682ebe.tar.gz
freebsd-ports-gnome-6ab84942c4479a8325ee3377220b1d22f2682ebe.tar.zst
freebsd-ports-gnome-6ab84942c4479a8325ee3377220b1d22f2682ebe.zip
- Update backports patch to 20121114
- Bump PORTREVISION Changes: - CVE-2006-7243 PHP before 5.3.4 accepts the \0 character in a pathname, which might allow context-dependent attackers to bypass intended access restrictions by placing a safe file extension after this character, as demonstrated by .php\0.jpg at the end of the argument to the file_exists function Secuity 3761df02-0f9c-11e0-becc-0022156e8794 fixed by check in fopen functions for strlen(filename) != filename_len - CVE-2012-4388 The sapi_header_op function in main/SAPI.c does not properly determine a pointer during checks for %0D sequences (aka carriage return characters), which allows remote attackers to bypass an HTTP response-splitting protection mechanism via a crafted URL, this vulnerability exists because of an incorrect fix for CVE-2011-1398. - Timezone database updated to version 2012.9 (2012i) PR: ports/173685 Submitted by: Svyatoslav Lempert <svyatoslav.lempert@gmail.com> Approved by: maintainer Feature safe: yes
Diffstat (limited to 'lang')
-rw-r--r--lang/php52/Makefile4
-rw-r--r--lang/php52/distinfo4
2 files changed, 4 insertions, 4 deletions
diff --git a/lang/php52/Makefile b/lang/php52/Makefile
index 50f57ca5a5f9..2845d7300eaf 100644
--- a/lang/php52/Makefile
+++ b/lang/php52/Makefile
@@ -7,7 +7,7 @@
PORTNAME= php52
PORTVERSION= 5.2.17
-PORTREVISION= 11
+PORTREVISION= 12
CATEGORIES?= lang devel www
MASTER_SITES= ${MASTER_SITE_PHP}
MASTER_SITE_SUBDIR= distributions
@@ -26,7 +26,7 @@ USE_BZIP2= yes
MAKE_JOBS_SAFE= yes
# BACKPORTS patch for lang/php52 and all php52-extensions
-PATCHFILES= php52-backports-security-20120911.patch
+PATCHFILES= php52-backports-security-20121114.patch
PATCH_SITES+= http://php52-backports.googlecode.com/files/
.if !defined(PKGNAMESUFFIX)
diff --git a/lang/php52/distinfo b/lang/php52/distinfo
index 6234d16a8ea1..a7d4eb16e0b0 100644
--- a/lang/php52/distinfo
+++ b/lang/php52/distinfo
@@ -1,7 +1,7 @@
SHA256 (php-5.2.17.tar.bz2) = e81beb13ec242ab700e56f366e9da52fd6cf18961d155b23304ca870e53f116c
SIZE (php-5.2.17.tar.bz2) = 9092312
-SHA256 (php52-backports-security-20120911.patch) = 4911e2a5abb72d0558b2baf07ff64ca054d71219bde183e41b591894fb7cb1f6
-SIZE (php52-backports-security-20120911.patch) = 356599
+SHA256 (php52-backports-security-20121114.patch) = 59dc139b9acf86bbb2e281696765de513c3bec7d43392a10b5f3b36a9881ab00
+SIZE (php52-backports-security-20121114.patch) = 410829
SHA256 (php-5.2.14-fpm-0.5.14-freebsd.patch.gz) = 354ce451417d14ef47761ae55147e9cee30fa0ff6f59447da021194c539f4d7f
SIZE (php-5.2.14-fpm-0.5.14-freebsd.patch.gz) = 43550
SHA256 (suhosin-patch-5.2.16-0.9.7.patch.gz) = aae115a318d80b3f32cedf876e7a8e4b932febb1b0c743c0b398003ebe122f91