/[smeserver]/rpms/php/sme8/php-5.3.3-CVE-2011-4153.patch
ViewVC logotype

Contents of /rpms/php/sme8/php-5.3.3-CVE-2011-4153.patch

Parent Directory Parent Directory | Revision Log Revision Log | View Revision Graph Revision Graph


Revision 1.2 - (show annotations) (download)
Fri Jun 29 14:54:00 2012 UTC (11 years, 10 months ago) by slords
Branch: MAIN
CVS Tags: php-5_3_3-15_el5_sme, php-5_3_3-16_el5_sme, php-5_3_3-14_el5_sme, php-5_3_3-13_el5_sme_1, php-5_3_3-13_el5_sme_2, php-5_3_3-17_el5_sme, php-5_3_3-13_el5_sme, HEAD
Changes since 1.1: +29 -0 lines
* Fri Jun 29 2012 Shad L. Lords <slords@mail.com> - 5.3.3-13.sme
- Obsolete php-domxml and php-dom [SME: 6733]
- Update Obsoletes and Conflicts [SME: 6436]

1
2 https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-4153
3
4 http://svn.php.net/viewvc?view=revision&revision=319442
5
6 --- php-5.3.3/ext/standard/syslog.c.cve4153
7 +++ php-5.3.3/ext/standard/syslog.c
8 @@ -234,6 +234,9 @@ PHP_FUNCTION(openlog)
9 free(BG(syslog_device));
10 }
11 BG(syslog_device) = zend_strndup(ident, ident_len);
12 + if(BG(syslog_device) == NULL) {
13 + RETURN_FALSE;
14 + }
15 openlog(BG(syslog_device), option, facility);
16 RETURN_TRUE;
17 }
18 --- php-5.3.3/Zend/zend_builtin_functions.c.cve4153
19 +++ php-5.3.3/Zend/zend_builtin_functions.c
20 @@ -683,6 +683,9 @@ repeat:
21 }
22 c.flags = case_sensitive; /* non persistent */
23 c.name = zend_strndup(name, name_len);
24 + if (c.name == NULL) {
25 + RETURN_FALSE;
26 + }
27 c.name_len = name_len+1;
28 c.module_number = PHP_USER_CONSTANT;
29 if (zend_register_constant(&c TSRMLS_CC) == SUCCESS) {

admin@koozali.org
ViewVC Help
Powered by ViewVC 1.2.1 RSS 2.0 feed