找回密码
 注册账户
查看: 372|回复: 0

PHP 4.3.11 and 5.0.4 released

[复制链接]
admin 发表于 2012-3-22 19:08:26 | 显示全部楼层 |阅读模式
The PHP Development Team would like to announce the immediate release of PHP 4.3.11 and 5.0.4. These are maintenance releases that in addition to fixing over 70 non-critical bugs, address several security issues. The addressed security issues include fixes to the exif and fbsql extensions, as well as fixes to unserialize(), swf_definepoly() and getimagesize()……All users of PHP are strongly encouraged to upgrade to this release.

Aside from the above mentioned issues this release includes the following important fixes:

* Crash in bzopen() if supplied path to non-existent file.

  * DOM crashing when attribute appended to Document.

  * unserialize() float problem on non-English locales.

  * Crash in msg_send() when non-string is stored without being serialized.

  * Possible infinite loop in imap_mail_compose().

  * Fixed crash in chunk_split(), when chunklen > strlen.

  * session_set_save_handler crashes PHP when supplied non-existent object reference.

  * Memory leak in zend_language_scanner.c.

  * Compile failures of zend_strtod.c.

  * Fixed crash in overloaded objects & overload() function.

  * cURL functions bypass open_basedir.

The PHP Development Team would like to thank all the people who have identified the security faults in PHP and helped us address them.

Download
您需要登录后才可以回帖 登录 | 注册账户

本版积分规则

存档|黑屋|手机|网络实验室 本站服务器由美国合租以及IDCLayer国际数据提供!!!

GMT+8, 2026-6-9 00:32 , Processed in 0.020089 second(s), 7 queries , Gzip On, Redis On.

Powered by Discuz! X3.5

© 2001-2025 Discuz! Team.

快速回复 返回顶部 返回列表