php: security bump to version 5.6.17
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Thu, 7 Jan 2016 18:46:52 +0000 (15:46 -0300)
committerPeter Korsgaard <peter@korsgaard.com>
Fri, 8 Jan 2016 17:51:46 +0000 (18:51 +0100)
Bug #70976 (Memory Read via gdImageRotateInterpolated Array Index Out of
Bounds).
Bug #70755 (fpm_log.c memory leak and buffer overflow).
Bug #70661 (Use After Free Vulnerability in WDDX Packet
Deserialization).
Bug #70741 (Session WDDX Packet Deserialization Type Confusion
Vulnerability).
Bug #70728 (Type Confusion Vulnerability in PHP_to_XMLRPC_worker()).

No CVEs assigned yet.

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/php/php.hash
package/php/php.mk

index ec632bfd52b924e59a1056e3c732b25981716926..7a7616fc0e0f587c61ff0baeee8bc95d42948458 100644 (file)
@@ -1,2 +1,2 @@
 # From http://php.net/downloads.php
-sha256 8ef43271d9bd8cc8f8d407d3ba569de9fa14a28985ae97c76085bb50d597de98        php-5.6.16.tar.xz
+sha256 ea9d5749380c7c7171e131616466deacd7cb124b5010eafc34e551b0a7b0fb2c        php-5.6.17.tar.xz
index 5bdd04ee6e487e9dbf2d1644b4eb862b5c61f9c9..ed391c02a9c28481a6f9093cd3991d00cc0724e1 100644 (file)
@@ -5,7 +5,7 @@
 ################################################################################
 
 PHP_VERSION_MAJOR = 5.6
-PHP_VERSION = $(PHP_VERSION_MAJOR).16
+PHP_VERSION = $(PHP_VERSION_MAJOR).17
 PHP_SITE = http://www.php.net/distributions
 PHP_SOURCE = php-$(PHP_VERSION).tar.xz
 PHP_INSTALL_STAGING = YES