Bug 200431

Summary: [PATCH] [CVE] lang/php5: Update to 5.4.41, addresses CVE vulnerabilities
Product: Ports & Packages Reporter: Naram Qashat <cyberbotx>
Component: Individual Port(s)Assignee: Alex Dupre <ale>
Status: Closed FIXED    
Severity: Affects Many People CC: cyberbotx, delphij, ports-secteam
Priority: --- Keywords: patch, security
Version: LatestFlags: bugzilla: maintainer-feedback? (ale)
Hardware: Any   
OS: Any   
Attachments:
Description Flags
php5-5.4.41.patch none

Description Naram Qashat 2015-05-24 20:23:45 UTC
Created attachment 157107 [details]
php5-5.4.41.patch

This updates PHP 5.4 to 5.4.41, as well as removes the PORTREVISION from databases/php5-pdo_sqlite, databases/php5-sqlite3, security/php5-mcrypt, and textproc/php5-pspell.

As this update is to address many vulnerabilities, I would push for this to be taken care of sooner rather than later.
Comment 1 Naram Qashat 2015-05-24 20:24:38 UTC
CCing ports-secteam due to the CVE vulnerabilities being addresses by this update.
Comment 2 Xin LI freebsd_committer freebsd_triage 2015-05-25 00:31:02 UTC
This is resolved by r387331, but thanks for your submission.