[Pkg-php-commits] r1224 - php5/trunk/debian
Sean Finney
seanius at alioth.debian.org
Mon Jan 19 22:34:54 UTC 2009
Author: seanius
Date: 2009-01-19 22:34:54 +0000 (Mon, 19 Jan 2009)
New Revision: 1224
Modified:
php5/trunk/debian/changelog
Log:
comment on broken status of zip patch
extractTo current exits with sigsegv after backporting
the patch, it looks like virtual_file_ex or one of the
other path-expanding helper functions is not happy and
this extension does not check error statuses of them.
Modified: php5/trunk/debian/changelog
===================================================================
--- php5/trunk/debian/changelog 2009-01-18 23:36:19 UTC (rev 1223)
+++ php5/trunk/debian/changelog 2009-01-19 22:34:54 UTC (rev 1224)
@@ -10,7 +10,7 @@
Patch: dba-inifile-truncation.patch (closes: #507101).
- CVE-2008-5658.patch: ZipArchive::extractTo directory traversal
Patch: CVE-2008-5658.patch (closes: #507857).
- THIS PATCH IS NOT YET TESTED
+ THIS PATCH IS CURRENTLY BROKEN :(
[ Raphael Geissert ]
* Picked up some patches from Gentoo (most included in PHP 5.2.7 and later):
More information about the Pkg-php-commits
mailing list