1
0
mirror of https://git.FreeBSD.org/ports.git synced 2024-11-20 00:21:35 +00:00

Update to lastest security patchset 20120103: added max_input_vars directive

(default "1000") to prevent attacks based on hash collisions (from PHP 5.4 RC4)

PR:		163782
Submitted by:	Svyatoslav Lempert <svyatoslav.lempert at gmail dot com>
Approved by:	maintainer
This commit is contained in:
Ruslan Makhmatkhanov 2012-01-02 18:26:27 +00:00
parent f321d678b1
commit de5b8d2ed2
Notes: svn2git 2021-03-31 03:12:20 +00:00
svn path=/head/; revision=288430
2 changed files with 4 additions and 4 deletions

View File

@ -7,7 +7,7 @@
PORTNAME= php52
PORTVERSION= 5.2.17
PORTREVISION= 4
PORTREVISION= 5
CATEGORIES?= lang devel www
MASTER_SITES= ${MASTER_SITE_PHP}
MASTER_SITE_SUBDIR= distributions
@ -187,7 +187,7 @@ CONFIGURE_ARGS+=--disable-ipv6
.endif
.if defined(WITH_BACKPORTS)
PATCHFILES+= php52-backports-security-20111030.patch
PATCHFILES+= php52-backports-security-20120103.patch
PATCH_SITES+= http://php52-backports.googlecode.com/files/
.else
FORBIDDEN= Vulnerable since 2011-01-13, http://portaudit.freebsd.org/3761df02-0f9c-11e0-becc-0022156e8794.html

View File

@ -6,5 +6,5 @@ SHA256 (suhosin-patch-5.2.16-0.9.7.patch.gz) = aae115a318d80b3f32cedf876e7a8e4b9
SIZE (suhosin-patch-5.2.16-0.9.7.patch.gz) = 23069
SHA256 (php-5.2.10-mail-header.patch) = a61d50540f4aae32390118453845c380fe935b6d1e46cef6819c8561946e942f
SIZE (php-5.2.10-mail-header.patch) = 3383
SHA256 (php52-backports-security-20111030.patch) = 642c124f702310d584940608f1ebcaf5a5c44ca4e17c0adb5aa538d76a86ec1f
SIZE (php52-backports-security-20111030.patch) = 280143
SHA256 (php52-backports-security-20120103.patch) = d2821a7f2bbca3bde5b908652ce6fac4983f9e1373a2f9a0d6cf57d3df4c51c7
SIZE (php52-backports-security-20120103.patch) = 283011