php-src/ext
Christoph M. Becker 6499581af7 Fix #72482: Ilegal write/read access caused by gdImageAALine overflow
Instead of rolling our own bounds check we use clip_1d() as it's done
in gdImageLine() and in external libgd. We must not pass the image
width and height, respectively, but rather the largest ordinate value
that is allowed to be accessed, i.e. width-1 and height-1,
respectively.
2016-10-30 14:28:23 -07:00
..
bcmath use zend_error instead of zend_error_noreturn 2016-10-14 10:53:40 +02:00
bz2 Fix bug #72837 - integer overflow in bzdecompress caused heap corruption 2016-08-16 22:55:41 -07:00
calendar Fix #71894: AddressSanitizer: global-buffer-overflow in zif_cal_from_jd 2016-07-29 01:04:21 +02:00
com_dotnet Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
ctype Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
curl Fix bug #73147: Use After Free in PHP7 unserialize() 2016-09-25 19:53:59 -07:00
date Fixed tests due to changes in underlaying data 2016-09-30 20:49:44 +01:00
dba Fix #70825: Cannot fetch multiple values with group in ini file 2016-08-25 18:18:10 +02:00
dom Fix bug #73150: missing NULL check in dom_document_save_html 2016-09-25 21:25:01 -07:00
enchant Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
ereg Fix bug #73284 - heap overflow in php_ereg_replace function 2016-10-11 14:16:51 -07:00
exif Same issue as #72926 in another place. 2016-09-04 20:49:34 -07:00
fileinfo Add test for bug #69107: finfo no longer detects PHP files 2016-08-08 18:43:33 +02:00
filter Fix #73054: default option ignored when object passed to int filter 2016-09-09 14:30:24 +02:00
ftp Test case for bug #72771 2016-08-30 13:44:34 +02:00
gd Fix #72482: Ilegal write/read access caused by gdImageAALine overflow 2016-10-30 14:28:23 -07:00
gettext Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
gmp Fixed test script 2016-03-17 17:06:56 +08:00
hash Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
iconv Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
imap Fix bug #73208 - another missing length check 2016-10-03 00:12:14 -07:00
interbase Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
intl Fix tests 2016-10-11 16:18:08 -07:00
json Do not wrap user exception in case of custom JSON serialization 2016-09-19 16:06:12 +02:00
ldap Fix various int size overflows. 2016-09-12 21:04:23 -07:00
libxml Fix bug #66502: DOM document dangling reference 2016-07-15 01:08:08 +02:00
mbstring Fix bug #73082 2016-09-25 16:07:14 -07:00
mcrypt fix leak 2016-10-08 19:07:35 +02:00
mssql Fix the fix (Nikita), thanks! 2016-08-06 12:08:13 +02:00
mysql Happy new year (Update copyright to 2016) 2016-01-03 01:44:37 +02:00
mysqli Revert "Backport patch for bug #71820" 2016-05-09 17:15:40 +02:00
mysqlnd fix ZTS build 2016-09-15 13:27:20 +02:00
oci8 Prepare for OCI8 PECL release 2016-08-18 13:50:36 +10:00
odbc Fix #69975: PHP segfaults when accessing nvarchar(max) defined columns 2016-07-08 15:33:46 +02:00
opcache Fixes #72590: Opcache restart with kill_all_lockers does not work 2016-09-05 16:59:28 +02:00
openssl Fix bug #73276 - crash in openssl_random_pseudo_bytes function 2016-10-11 13:37:47 -07:00
pcntl Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
pcre Fixed bug #73174 - heap overflow in php_pcre_replace_impl 2016-09-28 22:29:59 -07:00
pdo Fix bug #73331 - do not try to serialize/unserialize objects wddx can not handle 2016-10-23 20:09:23 -07:00
pdo_dblib Merge branch 'pull-request/2061' into PHP-5.6 2016-09-05 00:29:11 -07:00
pdo_firebird Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
pdo_mysql Fix test description 2016-02-13 17:46:24 +01:00
pdo_oci Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
pdo_odbc Fix ODBC bug for varchars returning with length zero 2016-06-02 12:04:10 +02:00
pdo_pgsql put missing prototype and fix ts build 2016-08-14 22:35:01 +02:00
pdo_sqlite Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
pgsql Fix various int size overflows. 2016-09-12 21:04:23 -07:00
phar Fix bug #73035 (Out of bound when verify signature of tar phar in phar_parse_tarfile) 2016-09-12 21:04:23 -07:00
posix Revert "Fixed bug #71219" 2016-07-30 18:34:34 +02:00
pspell Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
readline Fix header file include 2016-01-15 08:43:00 +01:00
recode Add more checks for int overflow 2016-09-12 21:04:23 -07:00
reflection fix: bug72222 for PHP-5.6 reflection export of array consts 2016-07-13 21:39:55 +02:00
session Fix #73100: session_destroy null dereference in ps_files_path_create 2016-09-16 23:41:10 +02:00
shmop Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
simplexml Fix bug #73293 - NULL pointer dereference in SimpleXMLElement::asXML() 2016-10-11 13:30:52 -07:00
skeleton
snmp Fix bug #72708 - php_snmp_parse_oid integer overflow in memory allocation 2016-08-16 22:55:19 -07:00
soap add test for bug #73037 2016-10-10 15:59:52 +02:00
sockets Fix #72677: SCM_CREDENTIALS related tests should be skipped on AIX 2016-07-28 17:19:47 +02:00
spl Fix bug #73144 and bug #73341 - remove extra dtor 2016-10-23 22:03:16 -07:00
sqlite3 Fix #73333: 2147483647 is fetched as string 2016-10-17 23:34:41 +02:00
standard Fix bug #73144 and bug #73341 - remove extra dtor 2016-10-23 22:03:16 -07:00
sybase_ct Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
sysvmsg Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
sysvsem Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
sysvshm Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
tidy Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
tokenizer Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
wddx Fix bug #73331 - do not try to serialize/unserialize objects wddx can not handle 2016-10-23 20:09:23 -07:00
xml Fix various int size overflows. 2016-09-12 21:04:23 -07:00
xmlreader Add regression test for bug #73053 2016-09-11 00:06:45 +02:00
xmlrpc Merge branch 'PHP-5.5' into PHP-5.6 2016-07-19 00:53:08 -07:00
xmlwriter Happy new year (Update copyright to 2016) 2016-01-01 19:21:47 +02:00
xsl fix test 2016-03-14 15:53:02 +01:00
zip Fix #70752: Depacking with wrong password leaves 0 length files 2016-09-06 01:03:46 +02:00
zlib Fix various int size overflows. 2016-09-12 21:04:23 -07:00
ext_skel
ext_skel_win32.php