From ecc80af0705e276e7e2f038f31aa8a13a58c0be5 Mon Sep 17 00:00:00 2001 From: Torsten Zuehlsdorff Date: Sun, 22 Dec 2019 18:43:39 +0000 Subject: MFH: r520629 lang/php73: Upgrade from 7.3.12 to 7.3.13 Changelog: Bcmath: Fixed bug #78878 (Buffer underflow in bc_shift_addsub). (CVE-2019-11046) Core: Fixed bug #78862 (link() silently truncates after a null byte on Windows). (CVE-2019-11044) Fixed bug #78863 (DirectoryIterator class silently truncates after a null byte). (CVE-2019-11045) Fixed bug #78943 (mail() may release string with refcount==1 twice). (CVE-2019-11049) Fixed bug #78787 (Segfault with trait overriding inherited private shadow property). Fixed bug #78868 (Calling __autoload() with incorrect EG(fake_scope) value). Fixed bug #78296 (is_file fails to detect file). EXIF: Fixed bug #78793 (Use-after-free in exif parsing under memory sanitizer). (CVE-2019-11050) Fixed bug #78910 (Heap-buffer-overflow READ in exif) (CVE-2019-11047). GD: Fixed bug #78849 (GD build broken with -D SIGNED_COMPARE_SLOW). MBString: Upgraded bundled Oniguruma to 6.9.4. OPcache: Fixed potential ASLR related invalid opline handler issues. Fixed $x = (bool)$x; with opcache (should emit undeclared variable notice). PCRE: Fixed bug #78853 (preg_match() may return integer > 1). Standard: Fixed bug #78759 (array_search in $GLOBALS). Fixed bug #77638 (var_export'ing certain class instances segfaults). Fixed bug #78840 (imploding $GLOBALS crashes). Fixed bug #78833 (Integer overflow in pack causes out-of-bound access). Fixed bug #78814 (strip_tags allows / in tag name => whitelist bypass). Changelog taken from: https://www.php.net/ChangeLog-7.php#7.3.13 Approved by: ports-secteam (joneum) --- lang/php73/Makefile | 2 +- lang/php73/distinfo | 6 +++--- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/lang/php73/Makefile b/lang/php73/Makefile index ecd1732118b8..ec7fe950d1ec 100644 --- a/lang/php73/Makefile +++ b/lang/php73/Makefile @@ -1,7 +1,7 @@ # $FreeBSD$ PORTNAME= php73 -DISTVERSION= 7.3.12 +DISTVERSION= 7.3.13 PORTREVISION?= 0 CATEGORIES?= lang devel www MASTER_SITES= PHP/distributions diff --git a/lang/php73/distinfo b/lang/php73/distinfo index 49794a7b8e02..8d72723983cf 100644 --- a/lang/php73/distinfo +++ b/lang/php73/distinfo @@ -1,3 +1,3 @@ -TIMESTAMP = 1574409147 -SHA256 (php-7.3.12.tar.xz) = aafe5e9861ad828860c6af8c88cdc1488314785962328eb1783607c1fdd855df -SIZE (php-7.3.12.tar.xz) = 12095212 +TIMESTAMP = 1576964457 +SHA256 (php-7.3.13.tar.xz) = 57ac55fe442d2da650abeb9e6fa161bd3a98ba6528c029f076f8bba43dd5c228 +SIZE (php-7.3.13.tar.xz) = 12102012 -- cgit v1.2.3