stable

php-8.3.13-1.fc41

FEDORA-2024-4a2385bf05 created by remi 2 weeks ago for Fedora 41

PHP version 8.3.13 (24 Oct 2024)

Calendar:

  • Fixed GH-16240: jdtounix overflow on argument value. (David Carlier)
  • Fixed GH-16241: easter_days/easter_date overflow on year argument. (David Carlier)
  • Fixed GH-16263: jddayofweek overflow. (cmb)
  • Fixed GH-16234: jewishtojd overflow. (nielsdos)

CLI:

  • Fixed bug GH-16137: duplicate http headers when set several times by the client. (David Carlier)

Core:

  • Fixed bug GH-16054 (Segmentation fault when resizing hash table iterator list while adding). (nielsdos)
  • Fixed bug GH-15905 (Assertion failure for TRACK_VARS_SERVER). (cmb)
  • Fixed bug GH-15907 (Failed assertion when promoting Serialize deprecation to exception). (ilutov)
  • Fixed bug GH-15851 (Segfault when printing backtrace during cleanup of nested generator frame). (ilutov)
  • Fixed bug GH-15866 (Core dumped in Zend/zend_generators.c). (Arnaud)
  • Fixed bug GH-16188 (Assertion failure in Zend/zend_exceptions.c). (Arnaud)
  • Fixed bug GH-16233 (Observer segfault when calling user function in internal function via trampoline). (nielsdos)

DOM:

  • Fixed bug GH-16039 (Segmentation fault (access null pointer) in ext/dom/parentnode/tree.c). (nielsdos)
  • Fixed bug GH-16149 (Null pointer dereference in DOMElement->getAttributeNames()). (nielsdos)
  • Fixed bug GH-16151 (Assertion failure in ext/dom/parentnode/tree.c). (nielsdos)
  • Fixed bug GH-16150 (Use after free in php_dom.c). (nielsdos)
  • Fixed bug GH-16152 (Memory leak in DOMProcessingInstruction/DOMDocument). (nielsdos)

JSON:

  • Fixed bug GH-15168 (stack overflow in json_encode()). (nielsdos)

GD:

  • Fixed bug GH-16232 (bitshift overflow on wbmp file content reading / fix backport from upstream). (David Carlier)
  • Fixed bug GH-12264 (overflow/underflow on imagerotate degrees value) (David Carlier)
  • Fixed bug GH-16274 (imagescale underflow on RBG channels / fix backport from upstream). (David Carlier)

LDAP:

  • Fixed bug GH-16032 (Various NULL pointer dereferencements in ldap_modify_batch()). (Girgias)
  • Fixed bug GH-16101 (Segfault in ldap_list(), ldap_read(), and ldap_search() when LDAPs array is not a list). (Girgias)
  • Fix GH-16132 (php_ldap_do_modify() attempts to free pointer not allocated by ZMM.). (Girgias)
  • Fix GH-16136 (Memory leak in php_ldap_do_modify() when entry is not a proper dictionary). (Girgias)

MBString:

  • Fixed bug GH-16261 (Reference invariant broken in mb_convert_variables()). (nielsdos)

OpenSSL:

  • Fixed stub for openssl_csr_new. (Jakub Zelenka)

PCRE:

  • Fixed bug GH-16189 (underflow on offset argument). (David Carlier)
  • Fixed bug GH-16184 (UBSan address overflowed in ext/pcre/php_pcre.c). (nielsdos)

PHPDBG:

  • Fixed bug GH-15901 (phpdbg: Assertion failure on i funcs). (cmb)
  • Fixed bug GH-16181 (phpdbg: exit in exception handler reports fatal error). (cmb)

Reflection:

  • Fixed bug GH-16187 (Assertion failure in ext/reflection/php_reflection.c). (DanielEScherzer)

SAPI:

  • Fixed bug GH-15395 (php-fpm: zend_mm_heap corrupted with cgi-fcgi request). (Jakub Zelenka, David Carlier)

SimpleXML:

  • Fixed bug GH-15837 (Segmentation fault in ext/simplexml/simplexml.c). (nielsdos)

Sockets:

  • Fixed bug GH-16267 (socket_strerror overflow on errno argument). (David Carlier)

SOAP:

  • Fixed bug #73182 (PHP SOAPClient does not support stream context HTTP headers in array form). (nielsdos)
  • Fixed bug #62900 (Wrong namespace on xsd import error message). (nielsdos)
  • Fixed bug GH-15711 (SoapClient can't convert BackedEnum to scalar value). (nielsdos)
  • Fixed bug GH-16237 (Segmentation fault when cloning SoapServer). (nielsdos)
  • Fix Soap leaking http_msg on error. (nielsdos)
  • Fixed bug GH-16256 (Assertion failure in ext/soap/php_encoding.c:460). (nielsdos)
  • Fixed bug GH-16259 (Soap segfault when classmap instantiation fails). (nielsdos)

SPL:

  • Fixed bug GH-15918 (Assertion failure in ext/spl/spl_fixedarray.c). (nielsdos)

Standard:

  • Fixed bug GH-16053 (Assertion failure in Zend/zend_hash.c). (Arnaud)
  • Fixed bug GH-15169 (stack overflow when var serialization in ext/standard/var). (nielsdos)

Streams:

  • Fixed bugs GH-15908 and GH-15026 (leak / assertion failure in streams.c). (nielsdos)
  • Fixed bug GH-15980 (Signed integer overflow in main/streams/streams.c). (cmb)

TSRM:

  • Prevent closing of unrelated handles. (cmb)

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2024-4a2385bf05

This update has been submitted for testing by remi.

2 weeks ago

This update's test gating status has been changed to 'waiting'.

2 weeks ago

This update's test gating status has been changed to 'passed'.

2 weeks ago
User Icon imabug provided feedback 2 weeks ago
karma

This update has been pushed to testing.

2 weeks ago
User Icon pbrobinson commented & provided feedback 2 weeks ago
karma

Seems fine with roundcube and wordpress.

This update can be pushed to stable now if the maintainer wishes

2 weeks ago

This update has been submitted for stable by remi.

There is an ongoing freeze; this will be pushed to stable after the freeze is over.

2 weeks ago

This update has been pushed to stable.

2 weeks ago

Please login to add feedback.

Metadata
Type
bugfix
Karma
2
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
7 days
Dates
submitted
2 weeks ago
in testing
2 weeks ago
in stable
2 weeks ago

Automated Test Results