/[smeserver]/rpms/php/sme8/php-5.3.3-CVE-2011-4153.patch
ViewVC logotype

Annotation of /rpms/php/sme8/php-5.3.3-CVE-2011-4153.patch

Parent Directory Parent Directory | Revision Log Revision Log | View Revision Graph Revision Graph


Revision 1.2 - (hide annotations) (download)
Fri Jun 29 14:54:00 2012 UTC (11 years, 10 months ago) by slords
Branch: MAIN
CVS Tags: php-5_3_3-15_el5_sme, php-5_3_3-16_el5_sme, php-5_3_3-14_el5_sme, php-5_3_3-13_el5_sme_1, php-5_3_3-13_el5_sme_2, php-5_3_3-17_el5_sme, php-5_3_3-13_el5_sme, HEAD
Changes since 1.1: +29 -0 lines
* Fri Jun 29 2012 Shad L. Lords <slords@mail.com> - 5.3.3-13.sme
- Obsolete php-domxml and php-dom [SME: 6733]
- Update Obsoletes and Conflicts [SME: 6436]

1 slords 1.2
2     https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-4153
3    
4     http://svn.php.net/viewvc?view=revision&revision=319442
5    
6     --- php-5.3.3/ext/standard/syslog.c.cve4153
7     +++ php-5.3.3/ext/standard/syslog.c
8     @@ -234,6 +234,9 @@ PHP_FUNCTION(openlog)
9     free(BG(syslog_device));
10     }
11     BG(syslog_device) = zend_strndup(ident, ident_len);
12     + if(BG(syslog_device) == NULL) {
13     + RETURN_FALSE;
14     + }
15     openlog(BG(syslog_device), option, facility);
16     RETURN_TRUE;
17     }
18     --- php-5.3.3/Zend/zend_builtin_functions.c.cve4153
19     +++ php-5.3.3/Zend/zend_builtin_functions.c
20     @@ -683,6 +683,9 @@ repeat:
21     }
22     c.flags = case_sensitive; /* non persistent */
23     c.name = zend_strndup(name, name_len);
24     + if (c.name == NULL) {
25     + RETURN_FALSE;
26     + }
27     c.name_len = name_len+1;
28     c.module_number = PHP_USER_CONSTANT;
29     if (zend_register_constant(&c TSRMLS_CC) == SUCCESS) {

admin@koozali.org
ViewVC Help
Powered by ViewVC 1.2.1 RSS 2.0 feed