7377f45b | 08-Jul-2016 |
Julien Pauli |
Merge branch 'pull-request/1982' into PHP-5.5 * pull-request/1982: Update PHP 5.5 NEWS entries with CVE info
|
b63d41e1 | 06-Jul-2016 |
Anatol Belski |
add tests for bug #72512 |
e1ba58f0 | 28-Sep-2015 |
Stanislav Malyshev |
Fix bug #70480 (php_url_parse_ex() buffer overflow read) (cherry picked from commit 629e4da7cc8b174acdeab84969cbfc606a019b31) |
ac567001 | 04-Jul-2016 |
Lior Kaplan |
Update PHP 5.5 NEWS entries with CVE info |
7b2c2269 | 04-Jul-2016 |
Pierre Joye |
Fixed bug #72512 gdImageTrueColorToPaletteBody allows arbitrary write/read access |
25bd11cf | 27-Jun-2016 |
Stanislav Malyshev |
Fix the fix for #72403 on nl2br |
cab1c3b3 | 27-Jun-2016 |
Stanislav Malyshev |
Fixed bug #72479 - same as #72434 |
15561918 | 21-Jun-2016 |
Julien Pauli |
5.5.38 now |
0c7250f2 | 21-Jun-2016 |
Anatol Belski |
remove the huge test file, generate it on the fly instead |
fc0b0afd | 21-Jun-2016 |
Stanislav Malyshev |
Now the right bug # |
2af6dded | 21-Jun-2016 |
Stanislav Malyshev |
Fix NEWS |
c395c6e5 | 21-Jun-2016 |
Stanislav Malyshev |
iFixed bug #72446 - Integer Overflow in gdImagePaletteToTrueColor() resulting in heap overflow |
b028cacf | 21-Jun-2016 |
Stanislav Malyshev |
update NEWS |
e1d2f86a | 21-Jun-2016 |
Stanislav Malyshev |
Merge branch 'PHP-5.5.37' into PHP-5.5 * PHP-5.5.37: fix tests fix build Fix bug #72455: Heap Overflow due to integer overflows Fix bug #72434: ZipArchive class Use
Merge branch 'PHP-5.5.37' into PHP-5.5 * PHP-5.5.37: fix tests fix build Fix bug #72455: Heap Overflow due to integer overflows Fix bug #72434: ZipArchive class Use After Free Vulnerability in PHP's GC algorithm and unserialize Fixed ##72433: Use After Free Vulnerability in PHP's GC algorithm and unserialize Fix bug #72407: NULL Pointer Dereference at _gdScaleVert Fix bug #72402: _php_mb_regex_ereg_replace_exec - double free Fix bug #72298 pass2_no_dither out-of-bounds access Fixed #72339 Integer Overflow in _gd2GetHeader() resulting in heap overflow Fix bug #72262 - do not overflow int Fix bug #72400 and #72403 - prevent signed int overflows for string lengths Fix bug #72275: don't allow smart_str to overflow int Fix bug #72340: Double Free Courruption in wddx_deserialize
show more ...
|
5f107ab8 | 21-Jun-2016 |
Stanislav Malyshev |
fix tests |
7f428cae | 21-Jun-2016 |
Stanislav Malyshev |
fix build |
6c5211a0 | 21-Jun-2016 |
Stanislav Malyshev |
Fix bug #72455: Heap Overflow due to integer overflows |
f6aef680 | 21-Jun-2016 |
Stanislav Malyshev |
Fix bug #72434: ZipArchive class Use After Free Vulnerability in PHP's GC algorithm and unserialize |
3f627e58 | 21-Jun-2016 |
Stanislav Malyshev |
Fixed ##72433: Use After Free Vulnerability in PHP's GC algorithm and unserialize |
b9ec171e | 19-Jun-2016 |
Stanislav Malyshev |
Fix bug #72407: NULL Pointer Dereference at _gdScaleVert |
5b597a2e | 19-Jun-2016 |
Stanislav Malyshev |
Fix bug #72402: _php_mb_regex_ereg_replace_exec - double free |
e9ac8954 | 19-Jun-2016 |
Stanislav Malyshev |
Fix bug #72298 pass2_no_dither out-of-bounds access |
77224557 | 18-Jun-2016 |
Pierre Joye |
Fixed #72339 Integer Overflow in _gd2GetHeader() resulting in heap overflow |
7245bff3 | 16-Jun-2016 |
Stanislav Malyshev |
Fix bug #72262 - do not overflow int |
88746d60 | 16-Jun-2016 |
Stanislav Malyshev |
Fix bug #72400 and #72403 - prevent signed int overflows for string lengths |