]>
granicus.if.org Git - php/log
Julien Pauli [Wed, 6 Jan 2016 10:41:50 +0000 (11:41 +0100)]
Merge branch 'PHP-7.0'
* PHP-7.0:
Moved buffer from heap to stack
Julien Pauli [Mon, 4 Jan 2016 13:46:57 +0000 (14:46 +0100)]
Moved buffer from heap to stack
Anatol Belski [Wed, 6 Jan 2016 06:53:50 +0000 (07:53 +0100)]
Merge branch 'PHP-7.0'
* PHP-7.0:
updated NEWS
Patch for Heap Buffer Overflow in EscapeShell
Anatol Belski [Wed, 6 Jan 2016 06:53:31 +0000 (07:53 +0100)]
updated NEWS
libnex [Sun, 3 Jan 2016 23:27:27 +0000 (12:27 +1300)]
Patch for Heap Buffer Overflow in EscapeShell
Proposed patch for bug #71270
Anatol Belski [Wed, 6 Jan 2016 06:46:10 +0000 (07:46 +0100)]
Merge branch 'PHP-7.0'
* PHP-7.0:
set release date
fix NEWS and add some 7.0.2 entries
Anatol Belski [Wed, 6 Jan 2016 06:45:03 +0000 (07:45 +0100)]
set release date
Anatol Belski [Wed, 6 Jan 2016 06:44:26 +0000 (07:44 +0100)]
fix NEWS and add some 7.0.2 entries
Anatol Belski [Wed, 6 Jan 2016 05:10:39 +0000 (06:10 +0100)]
Merge branch 'PHP-7.0'
* PHP-7.0:
Update NEWS
add NEWS entries for 7.0.2
re-apply the patch from
1785d2b805f64eaaacf98c14c9e13107bf085ab1
Improve fix for bug #70976
Fix bug #70976: fix boundary check on gdImageRotateInterpolated
Fixed bug #70755: fpm_log.c memory leak and buffer overflow
fix merge mistake
Fixed #70728
Fixed bug #70661 (Use After Free Vulnerability in WDDX Packet Deserialization)
Improve fix for bug #70976
Fixed bug #70661 (Use After Free Vulnerability in WDDX Packet Deserialization)
Fixed bug #70741: Session WDDX Packet Deserialization Type Confusion Vulnerability
Fixed #70728
Fixed bug #70755: fpm_log.c memory leak and buffer overflow
Fix bug #70976: fix boundary check on gdImageRotateInterpolated
typofix
Anatol Belski [Wed, 6 Jan 2016 05:09:12 +0000 (06:09 +0100)]
Merge remote-tracking branch 'phpsec/PHP-7.0' into PHP-7.0
* phpsec/PHP-7.0:
add NEWS entries for 7.0.2
re-apply the patch from
1785d2b805f64eaaacf98c14c9e13107bf085ab1
Improve fix for bug #70976
Fix bug #70976: fix boundary check on gdImageRotateInterpolated
Fixed bug #70755: fpm_log.c memory leak and buffer overflow
fix merge mistake
Fixed #70728
Fixed bug #70661 (Use After Free Vulnerability in WDDX Packet Deserialization)
Anatol Belski [Wed, 6 Jan 2016 05:08:46 +0000 (06:08 +0100)]
Merge remote-tracking branch 'origin/PHP-5.6' into PHP-7.0
* origin/PHP-5.6:
Update NEWS
Improve fix for bug #70976
Fixed bug #70661 (Use After Free Vulnerability in WDDX Packet Deserialization)
Fixed bug #70741: Session WDDX Packet Deserialization Type Confusion Vulnerability
Fixed #70728
Fixed bug #70755: fpm_log.c memory leak and buffer overflow
Fix bug #70976: fix boundary check on gdImageRotateInterpolated
typofix
Stanislav Malyshev [Wed, 6 Jan 2016 03:37:29 +0000 (19:37 -0800)]
Merge branch 'PHP-5.5' into PHP-5.6
* PHP-5.5:
Update NEWS
Improve fix for bug #70976
Fixed bug #70661 (Use After Free Vulnerability in WDDX Packet Deserialization)
Fixed bug #70741: Session WDDX Packet Deserialization Type Confusion Vulnerability
Fixed #70728
Fixed bug #70755: fpm_log.c memory leak and buffer overflow
Fix bug #70976: fix boundary check on gdImageRotateInterpolated
typofix
Stanislav Malyshev [Wed, 6 Jan 2016 03:28:24 +0000 (19:28 -0800)]
Update NEWS
Xinchen Hui [Tue, 5 Jan 2016 16:03:37 +0000 (00:03 +0800)]
Merge branch 'master' of git.php.net:/php-src
Anatol Belski [Tue, 5 Jan 2016 19:04:18 +0000 (20:04 +0100)]
Merge branch 'PHP-7.0'
* PHP-7.0:
improve fix for bug #71273
Anatol Belski [Tue, 5 Jan 2016 19:03:05 +0000 (20:03 +0100)]
improve fix for bug #71273
Anatol Belski [Tue, 5 Jan 2016 17:58:02 +0000 (18:58 +0100)]
Merge branch 'PHP-7.0'
* PHP-7.0:
update NEWS
Anatol Belski [Tue, 5 Jan 2016 17:57:38 +0000 (18:57 +0100)]
update NEWS
Anatol Belski [Tue, 5 Jan 2016 17:56:12 +0000 (18:56 +0100)]
Merge branch 'PHP-7.0'
* PHP-7.0:
Fixed bug #71273 A wrong ext directory setup in php.ini leads to crash
Anatol Belski [Tue, 5 Jan 2016 17:53:04 +0000 (18:53 +0100)]
Fixed bug #71273 A wrong ext directory setup in php.ini leads to crash
Xinchen Hui [Tue, 5 Jan 2016 16:03:01 +0000 (00:03 +0800)]
Merge branch 'PHP-7.0'
Xinchen Hui [Tue, 5 Jan 2016 16:02:53 +0000 (00:02 +0800)]
Merge branch 'PHP-7.0' of git.php.net:/php-src into PHP-7.0
George Wang [Thu, 19 Nov 2015 22:01:26 +0000 (17:01 -0500)]
Fixed runtime php.ini override, ini name length is off by 1.
(cherry picked from commit
5bcb7a7019a49c2f80eda7d2aa947efebeee0034 )
Xinchen Hui [Tue, 5 Jan 2016 16:01:56 +0000 (00:01 +0800)]
Merge branch 'PHP-7.0'
Xinchen Hui [Tue, 5 Jan 2016 16:01:44 +0000 (00:01 +0800)]
Fixed bug #71287 (Error message contains hexadecimal instead of decimal number)
Andrey Hristov [Tue, 5 Jan 2016 15:28:33 +0000 (16:28 +0100)]
Fix reloc for the allocator. Original files and lines were not showing
correct. This seems to be a PHP7 issue.
Bob Weinand [Tue, 5 Jan 2016 15:28:23 +0000 (16:28 +0100)]
Merge branch 'PHP-7.0'
Bob Weinand [Tue, 5 Jan 2016 15:27:18 +0000 (16:27 +0100)]
Fixed bug #71275 (Bad method called on cloning an object having a trait)
Xinchen Hui [Tue, 5 Jan 2016 15:02:55 +0000 (23:02 +0800)]
Merge branch 'PHP-7.0'
Xinchen Hui [Tue, 5 Jan 2016 15:02:17 +0000 (23:02 +0800)]
Fixed bug #71280 (ibase_blob_add() expects parameter 2 to be resorce)
Andrey Hristov [Tue, 5 Jan 2016 12:19:32 +0000 (13:19 +0100)]
Fix typo that was unhiding only with USE_ZEND_ALLOC
Anatol Belski [Tue, 5 Jan 2016 12:06:00 +0000 (13:06 +0100)]
add NEWS entries for 7.0.2
Julien Pauli [Mon, 4 Jan 2016 17:14:08 +0000 (18:14 +0100)]
Merge branch 'PHP-7.0'
* PHP-7.0:
Happy new year (Update copyright to 2016)
Julien Pauli [Mon, 4 Jan 2016 17:13:38 +0000 (18:13 +0100)]
Merge branch 'PHP-5.6' into PHP-7.0
* PHP-5.6:
Happy new year (Update copyright to 2016)
Conflicts:
ext/json/php_json_encoder.h
sapi/continuity/capi.c
Jakub Zelenka [Mon, 4 Jan 2016 16:53:30 +0000 (16:53 +0000)]
Merge branch 'PHP-7.0'
Jakub Zelenka [Mon, 4 Jan 2016 16:52:52 +0000 (16:52 +0000)]
Fix small CS label issue in openssl.c
Anatol Belski [Mon, 4 Jan 2016 16:52:37 +0000 (17:52 +0100)]
re-apply the patch from
1785d2b805f64eaaacf98c14c9e13107bf085ab1
too many conflicts to cherry-pick
Dominic Luechinger [Fri, 18 Dec 2015 00:35:32 +0000 (01:35 +0100)]
Replaced whitespaces with tabs and fixed aligments
Stanislav Malyshev [Tue, 29 Dec 2015 07:44:14 +0000 (23:44 -0800)]
Improve fix for bug #70976
Stanislav Malyshev [Tue, 8 Dec 2015 07:30:49 +0000 (23:30 -0800)]
Fix bug #70976: fix boundary check on gdImageRotateInterpolated
Stanislav Malyshev [Tue, 8 Dec 2015 08:10:07 +0000 (00:10 -0800)]
Fixed bug #70755: fpm_log.c memory leak and buffer overflow
Anatol Belski [Mon, 4 Jan 2016 16:33:23 +0000 (17:33 +0100)]
fix merge mistake
Julien Pauli [Tue, 22 Dec 2015 13:28:19 +0000 (14:28 +0100)]
Fixed #70728
Conflicts:
ext/xmlrpc/xmlrpc-epi-php.c
Stanislav Malyshev [Mon, 28 Dec 2015 22:46:35 +0000 (14:46 -0800)]
Fixed bug #70661 (Use After Free Vulnerability in WDDX Packet Deserialization)
Conflicts:
ext/wddx/wddx.c
Anatol Belski [Mon, 4 Jan 2016 16:07:37 +0000 (17:07 +0100)]
Merge remote-tracking branch 'php/PHP-7.0' into PHP-7.0
* php/PHP-7.0: (115 commits)
Do not edit the value in place (might be relates to #71261)
Fixed bug #71264 (file_put_contents() returns unexpected value when filesystem runs full)
Duplicated i
remove duplicated skipif conditions
bump year which is missed in rev
49493a2
bump year which is missed in rev
49493a2
sync with new tests from 7.0 for ICU 55_1 and 56_1 compat
sync skipifs for ext/intl for ICU 55_* and 56_* compat
Update header to PHP Version 7
Happy new year (Update copyright to 2016)
Happy new year (Update copyright to 2016)
Happy new year (Update copyright to 2016)
Fixed bug #71249 (ldap_mod_replace/ldap_mod_add store value as string "Array")
Fixed test after fix lineno of finally
MFH: Fix lineno for finally FAST_CALL and JMP
This should be better
Fixed bug #71245 (file_get_contents() ignores "header" context option if it's a reference)
Fixed info while setting opcache.file_cache_only
Drop extra line
Add CVE for #71105 (PHP 7.0.1)
...
Andrey Hristov [Mon, 4 Jan 2016 15:48:35 +0000 (16:48 +0100)]
- Make functions static, as they are not needed to be public - exported
through a structure
- Fixed typo in statistic name
- Added 2 static functions for copying a MYSQLND_CSTRING and converting
a CSTRING to STRING.
Xinchen Hui [Mon, 4 Jan 2016 13:39:20 +0000 (05:39 -0800)]
Merge branch 'PHP-7.0'
Xinchen Hui [Mon, 4 Jan 2016 13:38:15 +0000 (05:38 -0800)]
Do not edit the value in place (might be relates to #71261)
Xinchen Hui [Sun, 3 Jan 2016 06:23:06 +0000 (14:23 +0800)]
Merge branch 'PHP-7.0'
Xinchen Hui [Sun, 3 Jan 2016 06:21:23 +0000 (14:21 +0800)]
Fixed bug #71264 (file_put_contents() returns unexpected value when filesystem runs full)
Xinchen Hui [Sun, 3 Jan 2016 06:07:13 +0000 (14:07 +0800)]
Merge branch 'PHP-7.0'
Xinchen Hui [Sun, 3 Jan 2016 06:06:52 +0000 (14:06 +0800)]
Duplicated i
Lior Kaplan [Fri, 1 Jan 2016 23:44:37 +0000 (01:44 +0200)]
Happy new year (Update copyright to 2016)
Anatol Belski [Sat, 2 Jan 2016 12:59:13 +0000 (13:59 +0100)]
Merge branch 'PHP-7.0'
* PHP-7.0:
remove duplicated skipif conditions
Anatol Belski [Sat, 2 Jan 2016 12:56:56 +0000 (13:56 +0100)]
remove duplicated skipif conditions
Xinchen Hui [Sat, 2 Jan 2016 09:56:54 +0000 (17:56 +0800)]
Merge branch 'PHP-7.0'
Xinchen Hui [Sat, 2 Jan 2016 09:56:11 +0000 (17:56 +0800)]
bump year which is missed in rev
49493a2
Xinchen Hui [Sat, 2 Jan 2016 09:53:01 +0000 (17:53 +0800)]
Merge branch 'PHP-5.6' into PHP-7.0
Xinchen Hui [Sat, 2 Jan 2016 09:51:24 +0000 (17:51 +0800)]
bump year which is missed in rev
49493a2
Xinchen Hui [Sat, 2 Jan 2016 09:48:20 +0000 (17:48 +0800)]
Merge branch 'PHP-5.6' of https://github.com/kaplanlior/php-src into PHP-5.6
Anatol Belski [Fri, 1 Jan 2016 19:28:02 +0000 (20:28 +0100)]
Merge branch 'PHP-7.0'
* PHP-7.0:
sync with new tests from 7.0 for ICU 55_1 and 56_1 compat
sync skipifs for ext/intl for ICU 55_* and 56_* compat
Anatol Belski [Fri, 1 Jan 2016 19:27:23 +0000 (20:27 +0100)]
Merge branch 'PHP-5.6' into PHP-7.0
* PHP-5.6:
sync with new tests from 7.0 for ICU 55_1 and 56_1 compat
sync skipifs for ext/intl for ICU 55_* and 56_* compat
Anatol Belski [Fri, 1 Jan 2016 19:25:36 +0000 (20:25 +0100)]
sync with new tests from 7.0 for ICU 55_1 and 56_1 compat
Anatol Belski [Fri, 1 Jan 2016 19:13:35 +0000 (20:13 +0100)]
sync skipifs for ext/intl for ICU 55_* and 56_* compat
Lior Kaplan [Fri, 1 Jan 2016 18:06:12 +0000 (20:06 +0200)]
Happy new year (Update copyright to 2016)
Lior Kaplan [Fri, 1 Jan 2016 18:04:31 +0000 (20:04 +0200)]
Merge branch 'PHP-7.0'
* PHP-7.0:
Update header to PHP Version 7
Happy new year (Update copyright to 2016)
Happy new year (Update copyright to 2016)
Lior Kaplan [Fri, 1 Jan 2016 17:53:00 +0000 (19:53 +0200)]
Update header to PHP Version 7
Lior Kaplan [Fri, 1 Jan 2016 17:49:07 +0000 (19:49 +0200)]
Happy new year (Update copyright to 2016)
Lior Kaplan [Fri, 1 Jan 2016 17:47:16 +0000 (19:47 +0200)]
Merge branch 'PHP-5.6' into PHP-7.0
* PHP-5.6:
Happy new year (Update copyright to 2016)
Lior Kaplan [Fri, 1 Jan 2016 17:23:04 +0000 (19:23 +0200)]
Happy new year (Update copyright to 2016)
Lior Kaplan [Fri, 1 Jan 2016 17:19:27 +0000 (19:19 +0200)]
Happy new year (Update copyright to 2016)
Xinchen Hui [Fri, 1 Jan 2016 15:07:29 +0000 (07:07 -0800)]
Merge branch 'PHP-7.0'
Xinchen Hui [Fri, 1 Jan 2016 15:06:58 +0000 (07:06 -0800)]
Fixed bug #71249 (ldap_mod_replace/ldap_mod_add store value as string "Array")
Xinchen Hui [Fri, 1 Jan 2016 05:46:44 +0000 (13:46 +0800)]
Merge branch 'PHP-7.0'
Xinchen Hui [Fri, 1 Jan 2016 05:46:19 +0000 (13:46 +0800)]
Fixed test after fix lineno of finally
Derick Rethans [Thu, 31 Dec 2015 09:46:55 +0000 (09:46 +0000)]
Merge branch 'PHP-7.0'
Derick Rethans [Thu, 31 Dec 2015 09:46:43 +0000 (09:46 +0000)]
MFH: Fix lineno for finally FAST_CALL and JMP
Nikita Popov [Wed, 30 Dec 2015 22:49:07 +0000 (23:49 +0100)]
Fix lineno for finally FAST_CALL and JMP
Nikita Popov [Wed, 30 Dec 2015 22:36:03 +0000 (23:36 +0100)]
Mark uses of scope functions in namespaces as TOO_DYNAMIC
Of course they are not necessarily, but it's very likely and we have
to be conservative anyway.
Also use zend_string_equals_literal().
Xinchen Hui [Wed, 30 Dec 2015 13:10:21 +0000 (05:10 -0800)]
Merge branch 'PHP-7.0'
Xinchen Hui [Wed, 30 Dec 2015 13:10:05 +0000 (05:10 -0800)]
This should be better
Xinchen Hui [Wed, 30 Dec 2015 13:04:36 +0000 (05:04 -0800)]
Merge branch 'PHP-7.0'
Xinchen Hui [Wed, 30 Dec 2015 13:04:21 +0000 (05:04 -0800)]
Fixed bug #71245 (file_get_contents() ignores "header" context option if it's a reference)
Nikita Popov [Tue, 29 Dec 2015 10:16:08 +0000 (11:16 +0100)]
Introduce BIND_LEXICAL
This opcodes inserts a local CV into the closure static variable
table. This replaces the previous mechanism of having static
variables marked as LEXICAL, which perform a symtable lookup
during copying.
This means a) functions which contain closures no longer have to
rebuild their symtable (better performance) and b) we can now track
used variables in SSA.
Nikita Popov [Tue, 29 Dec 2015 10:20:44 +0000 (11:20 +0100)]
Forbid use() of auto-globals
We don't correctly support it, it doesn't make sense and it's also
forbidden for parameters.
Xinchen Hui [Tue, 29 Dec 2015 07:49:52 +0000 (15:49 +0800)]
Merge branch 'PHP-7.0'
* PHP-7.0:
Fixed info while setting opcache.file_cache_only
Drop extra line
Add CVE for #71105 (PHP 7.0.1)
Xinchen Hui [Tue, 29 Dec 2015 07:49:10 +0000 (15:49 +0800)]
Fixed info while setting opcache.file_cache_only
Stanislav Malyshev [Tue, 29 Dec 2015 07:44:14 +0000 (23:44 -0800)]
Improve fix for bug #70976
Stanislav Malyshev [Mon, 28 Dec 2015 22:46:35 +0000 (14:46 -0800)]
Fixed bug #70661 (Use After Free Vulnerability in WDDX Packet Deserialization)
Stanislav Malyshev [Mon, 28 Dec 2015 20:42:44 +0000 (12:42 -0800)]
Fixed bug #70741: Session WDDX Packet Deserialization Type Confusion Vulnerability
Lior Kaplan [Sun, 27 Dec 2015 18:18:23 +0000 (20:18 +0200)]
Drop extra line
Lior Kaplan [Sat, 26 Dec 2015 18:17:19 +0000 (20:17 +0200)]
Add CVE for #71105 (PHP 7.0.1)
Xinchen Hui [Sun, 27 Dec 2015 06:56:27 +0000 (22:56 -0800)]
Merge branch 'PHP-7.0'
Xinchen Hui [Sun, 27 Dec 2015 06:54:39 +0000 (22:54 -0800)]
Fixed bug #71225 (curl_setopt() fails to set CURLOPT_POSTFIELDS with reference to CURLFile)
Andrea Faulds [Sun, 27 Dec 2015 01:03:21 +0000 (01:03 +0000)]
Merge branch 'PHP-7.0'
Andrea Faulds [Sun, 27 Dec 2015 01:03:03 +0000 (01:03 +0000)]
Hatch elePHPant
Nikita Popov [Sat, 26 Dec 2015 22:43:33 +0000 (23:43 +0100)]
Use ZEND_HASH_FOREACH
Nikita Popov [Sat, 26 Dec 2015 22:06:56 +0000 (23:06 +0100)]
Don't reuse SSA var in UNSET_VAR
Instead use the SSA var that UNSET_VAR actually defines. Otherwise
we get issues trying to DCE unsets.
Xinchen Hui [Sat, 26 Dec 2015 05:31:57 +0000 (21:31 -0800)]
Merge branch 'PHP-7.0'
Xinchen Hui [Sat, 26 Dec 2015 05:31:42 +0000 (21:31 -0800)]
Fixed test (extract is no affected)