| Commit message (Collapse) | Author | Age | Files | Lines |
|
|
|
| |
(cherry picked from commit faedd9f8240ccdc1dff7578e73081ca037d7de1a)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Changelog:
Core:
Fixed bug #81302 (Stream position after stream filter removed).
Fixed bug #81346 (Non-seekable streams don't update position after write).
Fixed bug #73122 (Integer Overflow when concatenating strings).
GD:
Fixed bug #53580 (During resize gdImageCopyResampled cause colors change).
Opcache:
Fixed bug #81353 (segfault with preloading and statically bound closure).
Shmop:
Fixed bug #81407 (shmop_open won't attach and causes php to crash).
Standard:
Fixed bug #71542 (disk_total_space does not work with relative paths).
Fixed bug #81400 (Unterminated string in dns_get_record() results).
SysVMsg:
Fixed bug #78819 (Heap Overflow in msg_send).
XML:
Fixed bug #81351 (xml_parse may fail, but has no error code).
Zip:
Fixed bug #80833 (ZipArchive::getStream doesn't use setPassword).
Fixed bug #81420 (ZipArchive::extractTo extracts outside of destination).
Sponsored by: Bounce Experts
(cherry picked from commit 4a295722e6b8634711f4e1513bf38543ba4db7f9)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Changelog:
Core:
Fixed bug #81302 (Stream position after stream filter removed).
Fixed bug #81346 (Non-seekable streams don't update position after write).
Fixed bug #73122 (Integer Overflow when concatenating strings).
GD:
Fixed bug #53580 (During resize gdImageCopyResampled cause colors change).
Opcache:
Fixed bug #81353 (segfault with preloading and statically bound closure).
Shmop:
Fixed bug #81407 (shmop_open won't attach and causes php to crash).
Standard:
Fixed bug #71542 (disk_total_space does not work with relative paths).
Fixed bug #81400 (Unterminated string in dns_get_record() results).
SysVMsg:
Fixed bug #78819 (Heap Overflow in msg_send).
XML:
Fixed bug #81351 (xml_parse may fail, but has no error code).
Zip:
Fixed bug #81420 (ZipArchive::extractTo extracts outside of destination). (CVE-2021-21706)
Sponsored by: Bounce Experts
(cherry picked from commit 4f8082baa8f59e3d53761072f2496c895ae9f2d7)
|
|
|
|
|
|
|
|
|
|
|
|
| |
Changelog:
Zip:
Fixed bug #81420 (ZipArchive::extractTo extracts outside of destination). (CVE-2021-21706)
Sponsored by: Bounce Experts
(cherry picked from commit 607fd2a9360be7e5b7bb52b41e190798924d4cf6)
|
|
|
|
|
|
|
|
|
| |
PR: 258519
Reported by: Mike Fisher
Approved by: kai (python, maintainer)
MFH: 2021Q3
(cherry picked from commit 76efc7077d52ec2eeddd65b064df2b6e8e21a22c)
|
|
|
|
|
|
|
|
|
| |
PR: 258518
Reported by: Mike Fisher
Approved by: kai (python, maintainer)
MFH: 2021Q3
(cherry picked from commit fbe74ba5be4512f51250caac9a85c1e3ef21c9d3)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Changelog:
https://docs.python.org/release/3.7.12/whatsnew/changelog.html#changelog
PR: 258519
Reported by: Mike Fisher
Approved by: kai (python, maintainer)
MFH: 2021Q3
Security: 0e561173-0fa9-11ec-a2fa-080027948c12
(cherry picked from commit 1987c2191766e38becd9ef478edc83bccd9c12a2)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Changelog:
https://docs.python.org/release/3.6.15/whatsnew/changelog.html#changelog
PR: 258518
Reported by: Mike Fisher
Approved by: kai (python, maintainer)
MFH: 2021Q3
Security: 0e561173-0fa9-11ec-a2fa-080027948c12
(cherry picked from commit 526932019c85c1f77cfb93ee63c5046bc99f5219)
|
|
|
|
|
|
|
|
| |
PR: 258195
Reported by: wen@
Exp-run by: antoine@
(cherry picked from commit 56e02328d7d270e0a7bf1b618fc294c44bb965e8)
|
|
|
|
| |
(cherry picked from commit 04ea9da79a0b787cc2081cbb3475c6cdb3656198)
|
|
|
|
| |
(cherry picked from commit 83885fe63bcb9aa7b140eba3425e82739f4734b3)
|
|
|
|
|
|
|
|
| |
Changes: https://docs.python.org/release/3.8.11/whatsnew/changelog.html
PR: 257026
Exp-run by: antoine
(cherry picked from commit d6339e05a591c2d3fd74dc2c305f7dc9aeb31193)
|
|
|
|
| |
(cherry picked from commit 45b4a8417459545b71e6857a652703ddb640ef53)
|
|
|
|
|
| |
Changes: https://docs.python.org/release/3.9.6/whatsnew/changelog.html
(cherry picked from commit 02ddbd77e81b1c1006ee2a794ac2166ea1d2be61)
|
|
|
|
|
| |
Changes: https://docs.python.org/release/3.7.11/whatsnew/changelog.html
(cherry picked from commit bf7e7cc61646b4c610b59889601ded2782b6c480)
|
|
|
|
|
| |
Changes: https://docs.python.org/release/3.6.14/whatsnew/changelog.html
(cherry picked from commit a311409c7420c446d862ec080886520c35b0451e)
|
|
|
|
|
|
|
|
|
|
|
| |
bugfix only release
- https://ziglang.org/download/0.8.1/release-notes.html
Reviewed by: jbeich
Differential Revision: https://reviews.freebsd.org/D31880
(cherry picked from commit 086fa5f37495e736c943c293cc0e3c562ae63b47)
|
|
|
|
| |
(cherry picked from commit 9bf60dbaacbae1a61c233fd501a2bdff5f2e2540)
|
|
|
|
|
|
|
| |
Reported by: koobs
MFH: 2021Q3
(cherry picked from commit 334bcb11af442d7a4bac09ceed53bc1594478643)
|
|
|
|
|
|
|
|
|
|
|
|
| |
Changelog:
Phar:
Fixed bug #81211: Symlinks are followed when creating PHAR archive.
Sponsored by: Bounce Experts
(cherry picked from commit cf46723fd921f89919380b62afa252235257d323)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Changelog:
Core:
Fixed bug #72595 (php_output_handler_append illegal write access).
Fixed bug #66719 (Weird behaviour when using get_called_class() with call_user_func()).
Fixed bug #81305 (Built-in Webserver Drops Requests With "Upgrade" Header).
BCMath:
Fixed bug #78238 (BCMath returns "-0").
CGI:
Fixed bug #80849 (HTTP Status header truncation).
GD:
Fixed bug #51498 (imagefilledellipse does not work for large circles).
MySQLi:
Fixed bug #74544 (Integer overflow in mysqli_real_escape_string()).
OpenSSL:
Fixed bug #81327 (Error build openssl extension on php 7.4.22).
PDO_ODBC:
Fixed bug #81252 (PDO_ODBC doesn't account for SQL_NO_TOTAL).
Phar:
Fixed bug #81211: Symlinks are followed when creating PHAR archive.(cmb)
Shmop:
Fixed bug #81283 (shmop can't read beyond 2147483647 bytes).
Standard:
Fixed bug #72146 (Integer overflow on substr_replace).
Fixed bug #81265 (getimagesize returns 0 for 256px ICO images).
Fixed bug #74960 (Heap buffer overflow via str_repeat).
Streams:
Fixed bug #81294 (Segfault when removing a filter).
Sponsored by: Bounce Experts
(cherry picked from commit f54d1e57aa41b9d519d576875d4e6d0d40002918)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Changelog:
Core:
Fixed bug #72595 (php_output_handler_append illegal write access).
Fixed bug #66719 (Weird behaviour when using get_called_class() with call_user_func()).
Fixed bug #81305 (Built-in Webserver Drops Requests With "Upgrade" Header).
BCMath:
Fixed bug #78238 (BCMath returns "-0").
CGI:
Fixed bug #80849 (HTTP Status header truncation).
Date:
Fixed bug #64975 (Error parsing when AM/PM not at the end).
Fixed bug #78984 (DateTimeZone accepting invalid UTC timezones).
Fixed bug #79580 (date_create_from_format misses leap year).
Fixed bug #80409 (DateTime::modify() loses time with 'weekday' parameter).
GD:
Fixed bug #51498 (imagefilledellipse does not work for large circles).
MySQLi:
Fixed bug #74544 (Integer overflow in mysqli_real_escape_string()).
Opcache:
Fixed bug #81225 (Wrong result with pow operator with JIT enabled).
Fixed bug #81249 (Intermittent property assignment failure with JIT enabled).
Fixed bug #81206 (Multiple PHP processes crash with JIT enabled).
Fixed bug #81272 (Segfault in var[] after array_slice with JIT).
Fixed bug #81255 (Memory leak in PHPUnit with functional JIT).
Fixed bug #80959 (Infinite loop in building cfg during JIT compilation) (Nikita, Dmitry)
Fixed bug #81226 (Integer overflow behavior is different with JIT enabled).
OpenSSL:
Fixed bug #81327 (Error build openssl extension on php 7.4.22).
PDO_ODBC:
Fixed bug #81252 (PDO_ODBC doesn't account for SQL_NO_TOTAL).
Phar:
Fixed bug #81211: Symlinks are followed when creating PHAR archive (cmb)
Shmop:
Fixed bug #81283 (shmop can't read beyond 2147483647 bytes).
SimpleXML:
Fixed bug #81325 (Segfault in zif_simplexml_import_dom).
Standard:
Fixed bug #72146 (Integer overflow on substr_replace).
Fixed bug #81265 (getimagesize returns 0 for 256px ICO images).
Fixed bug #74960 (Heap buffer overflow via str_repeat).
Streams:
Fixed bug #81294 (Segfault when removing a filter).
Sponsored by: Bounce Experts
(cherry picked from commit 02593a6d1bb990f79489406c3e19037c7fbe0726)
|
|
|
|
|
|
|
|
|
|
|
| |
$ clinfo | fgrep 'Platform Version'
Platform Version OpenCL 3.0
$ ForceOCLVersion=12 clinfo | fgrep 'Platform Version'
Platform Version OpenCL 1.2
https://github.com/intel/compute-runtime/blob/21.26.20194/shared/source/debug_settings/debug_variables_base.inl
(cherry picked from commit 83ca5042280797b5622e1202df90c9c1d36356bd)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Python 3.8 [0] and 3.9 [1] are using a value for "EXT_SUFFIX"
that includes "SOABI" on FreeBSD, C extension module filenames
are affected by this change [2].
[0]: https://github.com/python/cpython/commit/b01091a3e71e6636d2df4db45920e820cdf7df3b
[1]: https://github.com/python/cpython/commit/4b155967b3e743cbdc31600f13f1bfcf07f7b6ce
[2]: https://github.com/python/cpython/blob/v3.8.11/Lib/distutils/command/build_ext.py#L675-683
PR: 256558
Approved by: koobs (python, maintainer)
MFH: 2020Q3 (blanket: bug & regression fix)
(cherry picked from commit 350158a17ebb99b22cbb5098e8003ea14b548c72)
|
|
|
|
|
|
| |
Reported by: jrm
(cherry picked from commit 969aedb5b1a5200865ef81bdf5fccb998a810f20)
|
|
|
|
|
|
| |
Changes: https://golang.org/doc/devel/release#go1.16.minor
Security: 880552c4-f63f-11eb-9d56-7186043316e9
(cherry picked from commit a372ea0aab44fb808e65df7dbea6f92aed91a430)
|
|
|
|
| |
(cherry picked from commit c8ba559efd5786701cd48523c363203ddf0a51c1)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Changelog:
Core:
Fixed bug #81145 (copy() and stream_copy_to_stream() fail for +4GB files).
Fixed bug #81163 (incorrect handling of indirect vars in __sleep).
Fixed bug #81159 (Object to int warning when using an object as a string offset).
Fixed bug #80728 (PHP built-in web server resets timeout when it can kill the process).
Fixed bug #73630 (Built-in Weberver - overwrite $_SERVER['request_uri']).
Fixed bug #80173 (Using return value of zend_assign_to_variable() is not safe).
Fixed bug #73226 (--r[fcez] always return zero exit code).
Intl:
Fixed bug #72809 (Locale::lookup() wrong result with canonicalize option).
Fixed bug #68471 (IntlDateFormatter fails for "GMT+00:00" timezone).
Fixed bug #74264 (grapheme_strrpos() broken for negative offsets).
OpenSSL:
Fixed bug #52093 (openssl_csr_sign truncates $serial).
PCRE:
Fixed bug #81101 (PCRE2 10.37 shows unexpected result).
Fixed bug #81243 (Too much memory is allocated for preg_replace()).
Reflection:
Fixed bug #81208 (Segmentation fault while create newInstance from attribute).
Standard:
Fixed bug #81223 (flock() only locks first byte of file).
Sponsored by: Bounce Experts
(cherry picked from commit 0b5547466b5012a6c97c66831ef7ed863677d3fa)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Changelog:
Core:
Fixed bug #81145 (copy() and stream_copy_to_stream() fail for +4GB files).
Fixed bug #81163 (incorrect handling of indirect vars in __sleep).
Fixed bug #80728 (PHP built-in web server resets timeout when it can kill the process).
Fixed bug #73630 (Built-in Weberver - overwrite $_SERVER['request_uri']).
Fixed bug #80173 (Using return value of zend_assign_to_variable() is not safe).
Fixed bug #73226 (--r[fcez] always return zero exit code).
Intl:
Fixed bug #72809 (Locale::lookup() wrong result with canonicalize option).
Fixed bug #68471 (IntlDateFormatter fails for "GMT+00:00" timezone).
Fixed bug #74264 (grapheme_strrpos() broken for negative offsets).
OpenSSL:
Fixed bug #52093 (openssl_csr_sign truncates $serial).
PCRE:
Fixed bug #81101 (PCRE2 10.37 shows unexpected result).
Fixed bug #81243 (Too much memory is allocated for preg_replace()).
Standard:
Fixed bug #81223 (flock() only locks first byte of file).
Sponsored by: Bounce Experts
(cherry picked from commit e297f257a84dc2e32a1fabad4d764b523f3b211d)
|
|
|
|
|
| |
PR: 257295
(cherry picked from commit f11e9f154140bf1d042a9f7fce069e21c3eda2b7)
|
|
|
|
|
|
| |
Changes: https://golang.org/doc/devel/release#go1.16.minor
Security: c365536d-e3cf-11eb-9d8d-b37b683944c2
(cherry picked from commit 720b8bdcb46d2c911b2e26a774ea9c03fb14f320)
|
|
|
|
|
|
|
|
|
|
|
|
| |
Over 120 individual programs plus dozens of programmer libraries and
feature plugins are released simultaneously as part of KDE Gear.
Today they all get new bugfix source releases.
Full changelog:
https://kde.org/announcements/changelogs/gear/21.04.3/
(cherry picked from commit 19ce6c4021c94df0f36147ee588a5938472b9650)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Currently, lang/python38 and lang/python39 don't honor
DISABLED_EXTENSIONS because patch-issue20210 was removed when
lang/python38 was added to the ports tree. patch-issue20210 is still
present on lang/python36 and lang/python37.
Building with poudriere is not affected because builds are executed in a
clean environment.
Setup.local is the more canonical and recommended method for customizing
Python builds for shared extensions & third party libraries.
Support for a *disabled* marker in Setup files was introduced in Python
3.7, so backport this fix to it to keep consistency in the ports tree.
PR: 243358 [1]
PR: 243937 [2]
Reported by: ngie [1]
Reported by: jcfyecrayz@liamekaens.com [2]
Reported by: tuxillo (IRC) DPorts
Reviewed by: koobs (python, maintainer)
Approved by: koobs, dbaio (python, maintainer)
Differential Revision: https://reviews.freebsd.org/D31086
(cherry picked from commit a94d4b1005b1e93a27bcb9e4e794eeb13c991dd5)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Changelog:
Core:
Fixed bug #81076 (incorrect debug info on Closures with implicit binds).
Fixed bug #81068 (Double free in realpath_cache_clean()).
Fixed bug #76359 (open_basedir bypass through adding "..").
Fixed bug #81090 (Typed property performance degradation with .= operator).
Fixed bug #81070 (Integer underflow in memory limit comparison).
Fixed bug #81122 (SSRF bypass in FILTER_VALIDATE_URL). (CVE-2021-21705)
Bzip2:
Fixed bug #81092 (fflush before stream_filter_remove corrupts stream).
Fileinfo:
Fixed bug #80197 (implicit declaration of function 'magic_stream' is invalid).
GMP:
Fixed bug #81119 (GMP operators throw errors with wrong parameter names).
OCI8:
Fixed bug #81088 (error in regression test for oci_fetch_object() and oci_fetch_array()).
Opcache:
Fixed bug #81051 (Broken property type handling after incrementing reference).
Fixed bug #80968 (JIT segfault with return from required file).
OpenSSL:
Fixed bug #76694 (native Windows cert verification uses CN as sever name).
MySQLnd:
Fixed bug #80761 (PDO uses too much memory).
PDO_Firebird:
Fixed bug #76448 (Stack buffer overflow in firebird_info_cb). (CVE-2021-21704)
Fixed bug #76449 (SIGSEGV in firebird_handle_doer). (CVE-2021-21704)
Fixed bug #76450 (SIGSEGV in firebird_stmt_execute). (CVE-2021-21704)
Fixed bug #76452 (Crash while parsing blob data in firebird_fetch_blob). (CVE-2021-21704)
readline:
Fixed bug #72998 (invalid read in readline completion).
Standard:
Fixed bug #81048 (phpinfo(INFO_VARIABLES) "Array to string conversion").
Fixed bug #77627 (method_exists on Closure::__invoke inconsistency).
Windows:
Fixed bug #81120 (PGO data for main PHP DLL are not used).
Sponsored by: Bounce Experts
(cherry picked from commit 526e5688439d2c300153c6031dd0c56e7cc8b9d7)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Changelog:
Core:
Fixed bug #81068 (Double free in realpath_cache_clean()).
Fixed bug #76359 (open_basedir bypass through adding "..").
Fixed bug #81090 (Typed property performance degradation with .= operator).
Fixed bug #81070 (Integer underflow in memory limit comparison).
Fixed bug #81122 (SSRF bypass in FILTER_VALIDATE_URL). (CVE-2021-21705)
Bzip2:
Fixed bug #81092 (fflush before stream_filter_remove corrupts stream).
OpenSSL:
Fixed bug #76694 (native Windows cert verification uses CN as sever name).
PDO_Firebird:
Fixed bug #76448 (Stack buffer overflow in firebird_info_cb). (CVE-2021-21704)
Fixed bug #76449 (SIGSEGV in firebird_handle_doer). (CVE-2021-21704)
Fixed bug #76450 (SIGSEGV in firebird_stmt_execute). (CVE-2021-21704)
Fixed bug #76452 (Crash while parsing blob data in firebird_fetch_blob). (CVE-2021-21704)
Standard:
Fixed bug #81048 (phpinfo(INFO_VARIABLES) "Array to string conversion").
Sponsored by: Bounce Experts
(cherry picked from commit bc406bce1549423d3bbc85170abe393f4dcccfba)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Changelog:
Core:
Fixed bug #81122: SSRF bypass in FILTER_VALIDATE_URL. (CVE-2021-21705)
PDO_Firebird:
Fixed bug #76448: Stack buffer overflow in firebird_info_cb. (CVE-2021-21704)
Fixed bug #76449: SIGSEGV in firebird_handle_doer. (CVE-2021-21704)
Fixed bug #76450: SIGSEGV in firebird_stmt_execute. (CVE-2021-21704)
Fixed bug #76452: Crash while parsing blob data in firebird_fetch_blob. (CVE-2021-21704)
Sponsored by: Bounce Experts
(cherry picked from commit 602c4c32efe0a00d33e9b7d36114796fba01830f)
|
|
|
|
| |
This brings one back port for the x86 back end.
|
|
|
|
|
| |
Changes: https://github.com/intel/compute-runtime/compare/21.25.20114...21.26.20194
Reported by: GitHub (watch releases)
|
|
|
|
|
|
|
| |
This brings four back ports for the tree optimizers, three for the
middle end, two for debug information, nine for the powerpc back end,
two for x86, and two for the Fortran and C++ front ends, each, plus
one for libstdc++.
|
|
|
|
|
| |
Reported by: portscout
Sponsored by: SkunkWerks, GmbH
|
| |
|
|
|
|
|
|
|
|
| |
ChangeLog: https://github.com/JetBrains/kotlin/releases/tag/v1.5.20
Submitted by: lwhsu
Approved by: lwhsu
PR: 256812
|
| |
|
|
|
|
|
|
| |
The GCC 8 release series went end of life after the release of GCC 8.5.
Mark this port as deprecated, alas without a concrete EXPIRY_DATE for
now, to notify users to migrate.
|
| |
|
| |
|
| |
|
| |
|
| |
|
|
|
|
|
| |
Changes: https://github.com/intel/compute-runtime/compare/21.24.20098...21.25.20114
Reported by: GitHub (watch releases)
|