| Summary: | lang/php56: imap_open allows to run arbitrary shell commands via mailbox parameter | ||
|---|---|---|---|
| Product: | Ports & Packages | Reporter: | Jochen Neumeister <joneum> |
| Component: | Individual Port(s) | Assignee: | Alex Dupre <ale> |
| Status: | Closed FIXED | ||
| Severity: | Affects Many People | Flags: | bugzilla:
maintainer-feedback?
(ale) |
| Priority: | --- | ||
| Version: | Latest | ||
| Hardware: | Any | ||
| OS: | Any | ||
|
Description
Jochen Neumeister
2018-11-21 16:16:48 UTC
A commit references this bug: Author: ale Date: Thu Nov 22 09:26:38 UTC 2018 New revision: 485585 URL: https://svnweb.freebsd.org/changeset/ports/485585 Log: Disable rsh/ssh functionality in imap by default (php bug #77153). PR: 233384 Submitted by: joneum Changes: head/mail/php56-imap/Makefile head/mail/php56-imap/files/patch-config.m4 head/mail/php56-imap/files/patch-php__imap.c head/mail/php56-imap/files/patch-php__imap.h A commit references this bug: Author: ale Date: Thu Nov 22 10:53:58 UTC 2018 New revision: 485595 URL: https://svnweb.freebsd.org/changeset/ports/485595 Log: MFH: r485585 Disable rsh/ssh functionality in imap by default (php bug #77153). PR: 233384 Submitted by: joneum Approved by: ports-secteam (blanket, security fix) Changes: _U branches/2018Q4/ branches/2018Q4/mail/php56-imap/Makefile branches/2018Q4/mail/php56-imap/files/patch-config.m4 branches/2018Q4/mail/php56-imap/files/patch-php__imap.c branches/2018Q4/mail/php56-imap/files/patch-php__imap.h A commit references this bug: Author: joneum Date: Thu Nov 22 11:53:56 UTC 2018 New revision: 485597 URL: https://svnweb.freebsd.org/changeset/ports/485597 Log: Disable rsh/ssh functionality in imap by default (php bug #77153). PR: 233384 Submitted by: joneum Approved by: tz (implicit) MFH: 2018Q4 Security: ec49f6b5-ee39-11e8-b2f4-74d435b63d51 Sponsored by: Netzkommune GmbH Changes: head/mail/php70-imap/Makefile head/mail/php70-imap/files/patch-php__imap.c head/mail/php70-imap/files/patch-php__imap.h head/mail/php71-imap/Makefile head/mail/php71-imap/files/patch-php__imap.c head/mail/php71-imap/files/patch-php__imap.h head/mail/php72-imap/Makefile head/mail/php72-imap/files/patch-php__imap.c head/mail/php72-imap/files/patch-php__imap.h head/mail/php73-imap/Makefile head/mail/php73-imap/files/patch-php__imap.c head/mail/php73-imap/files/patch-php__imap.h A commit references this bug: Author: antoine Date: Thu Nov 22 19:00:06 UTC 2018 New revision: 485608 URL: https://svnweb.freebsd.org/changeset/ports/485608 Log: MFH: r485597 Disable rsh/ssh functionality in imap by default (php bug #77153). PR: 233384 Submitted by: joneum Approved by: tz (implicit) Security: ec49f6b5-ee39-11e8-b2f4-74d435b63d51 Sponsored by: Netzkommune GmbH Changes: branches/2018Q4/mail/php70-imap/Makefile branches/2018Q4/mail/php70-imap/files/patch-php__imap.c branches/2018Q4/mail/php70-imap/files/patch-php__imap.h branches/2018Q4/mail/php71-imap/Makefile branches/2018Q4/mail/php71-imap/files/patch-php__imap.c branches/2018Q4/mail/php71-imap/files/patch-php__imap.h branches/2018Q4/mail/php72-imap/Makefile branches/2018Q4/mail/php72-imap/files/patch-php__imap.c branches/2018Q4/mail/php72-imap/files/patch-php__imap.h |