<feed xmlns='http://www.w3.org/2005/Atom'>
<title>delta/php-git.git, branch php-5.6.30</title>
<subtitle>git.php.net: repository/php-src.git
</subtitle>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/php-git.git/'/>
<entry>
<title>5.6.30</title>
<updated>2017-01-19T00:17:47+00:00</updated>
<author>
<name>Ferenc Kovacs</name>
<email>tyra3l@gmail.com</email>
</author>
<published>2017-01-19T00:17:47+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/php-git.git/commit/?id=195427c55481d9913ac9dd3fbcedf2f7c637e6de'/>
<id>195427c55481d9913ac9dd3fbcedf2f7c637e6de</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Merge branch 'PHP-5.6' into PHP-5.6.30</title>
<updated>2017-01-19T00:13:01+00:00</updated>
<author>
<name>Ferenc Kovacs</name>
<email>tyra3l@gmail.com</email>
</author>
<published>2017-01-19T00:13:01+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/php-git.git/commit/?id=2ba4d0a04201bb6217f90036c9abac6052f01aba'/>
<id>2ba4d0a04201bb6217f90036c9abac6052f01aba</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Fix #73869: Signed Integer Overflow gd_io.c</title>
<updated>2017-01-17T08:30:58+00:00</updated>
<author>
<name>Christoph M. Becker</name>
<email>cmbecker69@gmx.de</email>
</author>
<published>2016-12-17T16:06:58+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/php-git.git/commit/?id=d2274b01cbbadf5516b3ea87ad76fbae18834007'/>
<id>d2274b01cbbadf5516b3ea87ad76fbae18834007</id>
<content type='text'>
GD2 stores the number of horizontal and vertical chunks as words (i.e. 2
byte unsigned). These values are multiplied and assigned to an int when
reading the image, what can cause integer overflows. We have to avoid
that, and also make sure that either chunk count is actually greater
than zero. If illegal chunk counts are detected, we bail out from
reading the image.

(cherry picked from commit 5b5d9db3988b829e0b121b74bb3947f01c2796a1)
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
GD2 stores the number of horizontal and vertical chunks as words (i.e. 2
byte unsigned). These values are multiplied and assigned to an int when
reading the image, what can cause integer overflows. We have to avoid
that, and also make sure that either chunk count is actually greater
than zero. If illegal chunk counts are detected, we bail out from
reading the image.

(cherry picked from commit 5b5d9db3988b829e0b121b74bb3947f01c2796a1)
</pre>
</div>
</content>
</entry>
<entry>
<title>Fix #73868: DOS vulnerability in gdImageCreateFromGd2Ctx()</title>
<updated>2017-01-17T08:30:43+00:00</updated>
<author>
<name>Christoph M. Becker</name>
<email>cmbecker69@gmx.de</email>
</author>
<published>2016-08-16T16:23:36+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/php-git.git/commit/?id=f1b2afc9d9e77edf41804f5dfc4e2069d8a12975'/>
<id>f1b2afc9d9e77edf41804f5dfc4e2069d8a12975</id>
<content type='text'>
We must not pretend that there are image data if there are none. Instead
we fail reading the image file gracefully.

(cherry picked from commit cdb648dc4115ce0722f3cc75e6a65115fc0e56ab)
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
We must not pretend that there are image data if there are none. Instead
we fail reading the image file gracefully.

(cherry picked from commit cdb648dc4115ce0722f3cc75e6a65115fc0e56ab)
</pre>
</div>
</content>
</entry>
<entry>
<title>Add additional serialize tests for fixed bugs</title>
<updated>2017-01-16T12:24:13+00:00</updated>
<author>
<name>Nikita Popov</name>
<email>nikic@php.net</email>
</author>
<published>2017-01-16T12:24:13+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/php-git.git/commit/?id=6477bb724e0c4e95dfc8f315cac4b7e7a692b0f8'/>
<id>6477bb724e0c4e95dfc8f315cac4b7e7a692b0f8</id>
<content type='text'>
These have been fixed as a side-effect of the delayed __wakeup
patch.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
These have been fixed as a side-effect of the delayed __wakeup
patch.
</pre>
</div>
</content>
</entry>
<entry>
<title>Fix typo</title>
<updated>2017-01-16T08:23:06+00:00</updated>
<author>
<name>Stanislav Malyshev</name>
<email>stas@php.net</email>
</author>
<published>2017-01-16T08:23:06+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/php-git.git/commit/?id=50b38322b96416b0a5609591a52178f6100768da'/>
<id>50b38322b96416b0a5609591a52178f6100768da</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Fix test</title>
<updated>2017-01-16T02:42:22+00:00</updated>
<author>
<name>Stanislav Malyshev</name>
<email>stas@php.net</email>
</author>
<published>2017-01-16T02:42:22+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/php-git.git/commit/?id=814966ad33f9a734e422e34327256d58a91d1272'/>
<id>814966ad33f9a734e422e34327256d58a91d1272</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Update more functions with path check</title>
<updated>2017-01-16T01:31:08+00:00</updated>
<author>
<name>Stanislav Malyshev</name>
<email>stas@php.net</email>
</author>
<published>2017-01-16T01:31:08+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/php-git.git/commit/?id=0ab1af7d3eff815e1809fe044e54283b5a1b8e27'/>
<id>0ab1af7d3eff815e1809fe044e54283b5a1b8e27</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Fix glob-wrapper.phpt to not fail in Windows</title>
<updated>2017-01-10T22:18:52+00:00</updated>
<author>
<name>Mitch Hagstrand</name>
<email>mhagstrand@gmail.com</email>
</author>
<published>2017-01-10T19:51:55+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/php-git.git/commit/?id=ad9c552b120b8f73a5e87b2f8af05e32db512e9f'/>
<id>ad9c552b120b8f73a5e87b2f8af05e32db512e9f</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Fix open_basedir check for glob:// opendir wrapper</title>
<updated>2017-01-09T19:02:50+00:00</updated>
<author>
<name>Sara Golemon</name>
<email>pollita@php.net</email>
</author>
<published>2017-01-09T19:02:50+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/php-git.git/commit/?id=7e49e8e7970b423968de7a53ea9a0796f4634276'/>
<id>7e49e8e7970b423968de7a53ea9a0796f4634276</id>
<content type='text'>
php_check_open_basedir() expects a local filesystem path,
but we're handing it a `glob://...` URI instead.

Move the check to after the path trim so that we're checking
a meaningful pathspec.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
php_check_open_basedir() expects a local filesystem path,
but we're handing it a `glob://...` URI instead.

Move the check to after the path trim so that we're checking
a meaningful pathspec.
</pre>
</div>
</content>
</entry>
</feed>
