Summary: | lang/php5 Patch for phpinfo() Type Confusion Infoleak Vulnerability and SSL Private Keys | ||||||||
---|---|---|---|---|---|---|---|---|---|
Product: | Ports & Packages | Reporter: | logan | ||||||
Component: | Individual Port(s) | Assignee: | Alex Dupre <ale> | ||||||
Status: | Closed FIXED | ||||||||
Severity: | Affects Many People | CC: | ale, flo, logan, thierry | ||||||
Priority: | Normal | ||||||||
Version: | Latest | ||||||||
Hardware: | Any | ||||||||
OS: | Any | ||||||||
Attachments: |
|
Description
logan
2014-07-05 20:07:24 UTC
Created attachment 144436 [details]
PHP 5.3 infoleak vulnerability patch
A commit references this bug: Author: flo Date: Sun Jul 6 14:42:16 UTC 2014 New revision: 360913 URL: http://svnweb.freebsd.org/changeset/ports/360913 Log: Merge a patch from php 5.4/5.5 to fix a security vulnerability. No CVE has been assigned (yet?). More info on https://www.sektioneins.de/en/blog/14-07-04-phpinfo-infoleak.html PR: 191638 Submitted by: logan@elandsys.com Changes: head/lang/php53/Makefile head/lang/php53/files/patch-ext_standard_info.c Committed. Thanks! |