--- rpms/php/sme8/php-5.3.3-CVE-2011-1468.patch 2011/11/03 22:49:53 1.1 +++ rpms/php/sme8/php-5.3.3-CVE-2011-1468.patch 2011/11/03 22:49:53 1.1.2.1 @@ -0,0 +1,24 @@ + +https://bugzilla.redhat.com/show_bug.cgi?id=690899 + +http://svn.php.net/viewvc/?view=revision&revision=308531 +http://svn.php.net/viewvc?view=revision&revision=308534 + +--- php-5.3.3/ext/openssl/openssl.c.cve1468 ++++ php-5.3.3/ext/openssl/openssl.c +@@ -4697,6 +4697,7 @@ PHP_FUNCTION(openssl_encrypt) + if (free_iv) { + efree(iv); + } ++ EVP_CIPHER_CTX_cleanup(&cipher_ctx); + } + /* }}} */ + +@@ -4770,6 +4771,7 @@ PHP_FUNCTION(openssl_decrypt) + if (base64_str) { + efree(base64_str); + } ++ EVP_CIPHER_CTX_cleanup(&cipher_ctx); + } + /* }}} */ +