summaryrefslogtreecommitdiff
path: root/ext
Commit message (Expand)AuthorAgeFilesLines
* Fixed bug #76459 windows linkinfo lacks openbasedir checkAnatol Belski2018-07-161-1/+12
* Fix bug #76557: heap-buffer-overflow (READ of size 48) while reading exif dataStanislav Malyshev2018-07-163-1/+83
* Fix bug #76423 - Int Overflow lead to Heap OverFlow in exif_thumbnail_extract...Stanislav Malyshev2018-07-163-1/+23
* Fix test portabilityAnatol Belski2018-04-241-2/+4
* Fix tsrm_lsStanislav Malyshev2018-04-231-1/+1
* Merge remote-tracking branch 'security/bug76249' into PHP-5.6Stanislav Malyshev2018-04-232-0/+21
|\
| * Fix testStanislav Malyshev2018-04-221-2/+4
| * Fix bug #76249 - fail on invalid sequencesStanislav Malyshev2018-04-222-0/+19
* | Merge remote-tracking branch 'security/bug76248' into PHP-5.6Stanislav Malyshev2018-04-232-1/+45
|\ \
| * | Fix bug #76248 - Malicious LDAP-Server Response causes CrashStanislav Malyshev2018-04-222-1/+45
| |/
| * Fix bug #75981: prevent reading beyond buffer startStanislav Malyshev2018-02-262-2/+34
* | Fix #76129 - remove more potential unfiltered outputs for pharStanislav Malyshev2018-04-2313-16/+14
* | Fix #76130: Heap Buffer Overflow (READ: 1786) in exif_iif_add_valueChristoph M. Becker2018-04-224-1/+21
* | Fix bug #75981: prevent reading beyond buffer startStanislav Malyshev2018-02-202-2/+34
|/
* Fixed bug #75571: Potential infinite loop in gdImageCreateFromGifCtxChristoph M. Becker2018-01-013-5/+20
* Fix bug #74782: remove file name from output to avoid XSSStanislav Malyshev2018-01-0114-45/+45
* Backport and apply upstream patch for CVE-2017-14107Anatol Belski2017-10-271-1/+6
* Parametrize the expected value to avoid platform false positivesAnatol Belski2017-10-241-1/+1
* Fixed bug #72535 arcfour encryption stream filter crashes phpAnatol Belski2017-10-242-1/+24
* Fixed bug #75055 Out-Of-Bounds Read in timelib_meridian()Anatol Belski2017-10-245-716/+2336
* Apply upstream patch for CVE-2016-1283Anatol Belski2017-10-242-1/+16
* Patch from the upstream gitRemi Collet2017-07-051-1/+3
* Patch from the upstream gitRemi Collet2017-07-051-1/+8
* Patch from the upstream gitRemi Collet2017-07-051-0/+2
* Patch from the upstream gitRemi Collet2017-07-051-5/+0
* Patch from the upstream gitRemi Collet2017-07-051-2/+6
* Improve fix for #74145Stanislav Malyshev2017-07-041-5/+10
* Fix testsStanislav Malyshev2017-07-042-4/+4
* Fix bug #74087Stanislav Malyshev2017-07-041-1/+1
* Fixed parsing of strange formats with mixed month/day and time stringsDerick Rethans2017-07-042-6370/+5466
* Fix bug #74145 - wddx parsing empty boolean tag leads to SIGSEGVStanislav Malyshev2017-07-043-9/+31
* Fixed bug #74111Nikita Popov2017-07-044-517/+501
* Fix #74435: Buffer over-read into uninitialized memoryChristoph M. Becker2017-07-043-0/+30
* Fix bug #74651 - check EVP_SealInit as it can return -1Stanislav Malyshev2017-07-043-3/+47
* fix test for 32bits (int -> float)Remi Collet2017-02-011-2/+2
* Fix #73869: Signed Integer Overflow gd_io.cChristoph M. Becker2017-01-174-0/+23
* Fix #73868: DOS vulnerability in gdImageCreateFromGd2Ctx()Christoph M. Becker2017-01-173-2/+24
* Add additional serialize tests for fixed bugsNikita Popov2017-01-163-0/+120
* Fix typoStanislav Malyshev2017-01-161-1/+1
* Fix testStanislav Malyshev2017-01-151-6/+6
* Update more functions with path checkStanislav Malyshev2017-01-153-3/+3
* Fix glob-wrapper.phpt to not fail in WindowsMitch Hagstrand2017-01-101-5/+5
* Fix open_basedir check for glob:// opendir wrapperSara Golemon2017-01-091-0/+35
* add skip when json not loadedRemi Collet2017-01-061-0/+2
* Fix printf modifierNikita Popov2017-01-051-1/+1
* Add tests for delayed __wakeup()Nikita Popov2017-01-057-0/+263
* Implement delayed __wakeupNikita Popov2017-01-052-535/+622
* Merge branch 'PHP-5.6.30' into PHP-5.6Stanislav Malyshev2017-01-0211-511/+571
|\
| * Fix bug #73737 FPE when parsing a tag formatStanislav Malyshev2016-12-313-1/+13
| * Fix bug #73773 - Seg fault when loading hostile pharStanislav Malyshev2016-12-311-2/+2