Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

php5-ctype-5.5.14-72.1 RPM for armv7hl

From OpenSuSE 42.2 updates for armv7hl

Name: php5-ctype Distribution: openSUSE Leap 42.2
Version: 5.5.14 Vendor: openSUSE
Release: 72.1 Build date: Thu Jan 5 19:29:00 2017
Group: Development/Libraries/PHP Build host: armbuild23
Size: 9921 Source RPM: php5-5.5.14-72.1.src.rpm
Packager: http://bugs.opensuse.org
Url: http://www.php.net
Summary: PHP5 Extension Module
PHP functions for checking whether a character or string falls into a
certain character class according to the current locale.



Authors:
--------
    The PHP Group
    See http://www.php.net/credits.php for more details

Provides

Requires

License

PHP-3.01

Changelog

* Wed Dec 14 2016 pgajdos@suse.com
  - security update:
    * CVE-2016-9933 [bsc#1015187]
      + php-CVE-2016-9933.patch
    * CVE-2016-9934 [bsc#1015188]
      + php-CVE-2016-9934.patch
    * CVE-2016-9935 [bsc#1015189]
      + php-CVE-2016-9935.patch
* Tue Nov 08 2016 pgajdos@suse.com
  - security update:
    * CVE-2016-9137 [bsc#1008029]
      + php-CVE-2016-9137.patch
* Thu Oct 20 2016 pgajdos@suse.com
  - security update:
    * CVE-2016-8670 [bsc#1004924]
      + php-CVE-2016-8670.patch
    * CVE-2016-6911 [bsc#1005274]
      + php-CVE-2016-6911.patch
* Fri Oct 14 2016 pgajdos@suse.com
  - security update:
    * CVE-2016-7568 [bsc#1001900]
      + php-CVE-2016-7568.patch
* Wed Sep 21 2016 pgajdos@suse.com
  - security update:
    * CVE-2016-7412 [bsc#999680]
      + php-CVE-2016-7412.patch
    * CVE-2016-7411 [bsc#999682]
      + php-CVE-2016-7411.patch
    * CVE-2016-7417 [bsc#999684]
      + php-CVE-2016-7417.patch
    * CVE-2016-7413 [bsc#999679]
      + php-CVE-2016-7413.patch
    * CVE-2016-7418 [bsc#999819]
      + php-CVE-2016-7418.patch
    * CVE-2016-7414 [bsc#999820]
      + php-CVE-2016-7414.patch
    * CVE-2016-7416 [bsc#999685]
      + php-CVE-2016-7416.patch
* Mon Sep 05 2016 pgajdos@suse.com
  - security update:
    * CVE-2016-7132 [bsc#997230], CVE-2016-7131 [bsc#997225]
      + php-CVE-2016-7131,7132.patch
    * CVE-2016-7129 [bsc#997220]
      + php-CVE-2016-7129.patch
    * CVE-2016-7130 [bsc#997257]
      + php-CVE-2016-7130.patch
    * CVE-2016-7134 [bsc#997248]
      + php-CVE-2016-7134.patch
    * CVE-2016-7128 [bsc#997211]
      + php-CVE-2016-7128.patch
    * CVE-2016-7127 [bsc#997210]
      + php-CVE-2016-7127.patch
    * CVE-2016-7126 [bsc#997208]
      + php-CVE-2016-7126.patch
    * CVE-2016-7125 [bsc#997207]
      + php-CVE-2016-7125.patch
    * CVE-2016-7124 [bsc#997206]
      + php-CVE-2016-7124.patch
* Tue Aug 02 2016 pgajdos@suse.com
  - security update:
    * CVE-2014-3587 [bsc#987530]
      + php-CVE-2016-3587.patch
    * CVE-2016-6128 [bsc#987580]
      + php-CVE-2016-6128.patch
    * CVE-2016-6161 [bsc#988032]
      + php-CVE-2016-6161.patch
    * CVE-2016-6292 [bsc#991422]
      + php-CVE-2016-6292.patch
    * CVE-2016-6295 [bsc#991424]
      + php-CVE-2016-6295.patch
    * CVE-2016-6297 [bsc#991426]
      + php-CVE-2016-6297.patch
    * CVE-2016-6291 [bsc#991427]
      + php-CVE-2016-6291.patch
    * CVE-2016-6289 [bsc#991428]
      + php-CVE-2016-6289.patch
    * CVE-2016-6290 [bsc#991429]
      + php-CVE-2016-6290.patch
    * CVE-2016-5399 [bsc#991430]
      + php-CVE-2016-5399.patch
    * CVE-2016-6288 [bsc#991433]
      + php-CVE-2016-6288.patch
    * CVE-2016-6296 [bsc#991437]
      + php-CVE-2016-6296.patch
    * CVE-2016-6207 [bsc#991434]
      + php-CVE-2016-6207.patch
* Mon Jul 18 2016 sflees@suse.de
  - security update:
    * CVE-2016-5385 [bsc#988486]
      + php-CVE-2016-5385.patch
* Mon Jun 27 2016 pgajdos@suse.com
  - security update:
    * CVE-2016-5768 [bsc#986246]
      + php-CVE-2016-5768.patch
    * CVE-2016-5772 [bsc#986244]
      + php-CVE-2016-5772.patch
    * CVE-2015-8935 [bsc#986004]
      + php-CVE-2015-8935.patch
    * CVE-2016-5770 [bsc#986392]
      + php-CVE-2016-5770.patch
    * CVE-2016-5771 [bsc#986391]
      + php-CVE-2016-5771.patch
    * CVE-2016-5769 [bsc#986388]
      + php-CVE-2016-5769.patch
    * CVE-2016-5766 [bsc#986386]
      + php-CVE-2016-5766.patch
    * CVE-2016-5767 [bsc#986393]
      + php-CVE-2016-5767.patch
    * CVE-2016-5773 [bsc#986247]
      + php-CVE-2016-5773.patch
* Tue May 31 2016 pgajdos@suse.com
  - security update:
    * CVE-2013-7456 [bsc#982009]
      + php-CVE-2013-7456.patch
    * CVE-2016-5093 [bsc#982010]
      + php-CVE-2016-5093.patch
    * CVE-2016-5094, CVE-2016-5095 [bsc#982011] [bsc#982012]
      + php-CVE-2016-5094,5095.patch
    * CVE-2016-5096 [bsc#982013]
      + php-CVE-2016-5096.patch
* Tue May 24 2016 pgajdos@suse.com
  - security update:
    * CVE-2015-8877 [bsc#981061]
      + php-CVE-2015-8877.patch
    * CVE-2015-8876 [bsc#981049]
      + php-CVE-2015-8876.patc
    * CVE-2015-8879 [bsc#981050]
      + php-CVE-2015-8879.patch
* Wed May 18 2016 pgajdos@suse.com
  - security update:
    * CVE-2015-4116 [bsc#980366]
      + php-CVE-2015-4116.patch
    * CVE-2015-8874 [bsc#980375]
      + php-CVE-2015-8874.patch
    * CVE-2015-8873 [bsc#980373]
      + php-CVE-2015-8873.patch
* Mon May 09 2016 pgajdos@suse.com
  - security update:
    * CVE-2016-4540, CVE-2016-4541 [bsc#978829]
      + php-CVE-2016-4540,4541.patch
    * CVE-2016-4542, CVE-2016-4543, CVE-2016-4544 [bsc#978830]
      + php-CVE-2016-4542,4543,4544.patch
    * CVE-2016-4537, CVE-2016-4538 [bsc#978827]
      + php-CVE-2016-4537,4538.patch
    * CVE-2016-4539 [bsc#978828]
      + php-CVE-2016-4539.patch
* Mon May 02 2016 pgajdos@suse.com
  - security update:
    * CVE-2016-4342 [bsc#977991]
      + php-CVE-2016-4342.patch
    * CVE-2016-4346 [bsc#977994]
      + php-CVE-2016-4346.patch
    * CVE-2016-4346 [bsc#977994]
      + php-CVE-2016-4346.patch
* Mon Apr 25 2016 pgajdos@suse.com
  - security update:
    * CVE-2016-4073 [bsc#977003]
      + php-CVE-2016-4073.patch
    * CVE-2015-8867 [bsc#977005]
      + php-CVE-2015-8867.patch
    * CVE-2016-4070 [bsc#976997]
      + php-CVE-2016-4070.patch
    * CVE-2015-8866 [bsc#976996]
      + php-CVE-2015-8866.patch
    * CVE-2016-4071 [bsc#977000]
      + php-CVE-2016-4071.patch
* Thu Apr 14 2016 pgajdos@suse.com
  - fix incomplete php-CVE-2015-8835.patch [bsc#973351#c14]
* Thu Apr 07 2016 pgajdos@suse.com
  - fixed libmagic buffer overflow [bsc#974305]
      + php-libmagic-boverflow-malformed-magic-file.patch
* Mon Apr 04 2016 pgajdos@suse.com
  - security update:
    * CVE-2015-8838 [bsc#973792]
      + php-CVE-2015-8838.patch
* Fri Apr 01 2016 pgajdos@suse.com
  - security update:
    * CVE-2015-8835 [bsc#973351]
      + php-CVE-2015-8835.patch
* Tue Mar 22 2016 pgajdos@suse.com
  - security update:
    * CVE-2016-3141 [bsc#969821]
      + php-CVE-2016-3141.patch
    * CVE-2016-3142 [bsc#971912]
      + php-CVE-2016-3142.patch
    * CVE-2014-9767 [bsc#971612]
      + php-CVE-2014-9767.patch
    * CVE-2016-3185 [bsc#971611]
      + php-CVE-2016-3185.patch
* Tue Mar 01 2016 pgajdos@suse.com
  - security update:
    * CVE-2016-2554 [bsc#968284]
* Tue Nov 24 2015 pgajdos@suse.com
  - security update:
    * CVE-2015-7803 [bsc#949961]
      + php-CVE-2015-7803.patch
    * CVE-2016-1903 [bsc#962057]
      + php-CVE-2016-1903.patch
* Wed Oct 07 2015 pgajdos@suse.com
  - revert upstream change in suhosin.ini -- suhosin extension is
    loaded by default [bnc#949134]
    + php-suhosin.ini.patch
* Fri Sep 11 2015 pgajdos@suse.com
  -  security update:
    * CVE-2015-6831 [bnc#942291] [bnc#942294] [bnc#942295]
      + php-CVE-2015-6831.patch
    * CVE-2015-6832 [bnc#942293]
      + php-CVE-2015-6832.patch
    * CVE-2015-6833 [bnc#942296]
      + php-CVE-2015-6833.patch
    * CVE-2015-6834 [bnc#945403]
      + php-CVE-2015-6834.patch
    * CVE-2015-6835 [bnc#945402]
      + php-CVE-2015-6835.patch
    * CVE-2015-6836 [bnc#945428]
      + php-CVE-2015-6836.patch
    * CVE-2015-6837 CVE-2015-6838 [bnc#945412]
      + php-CVE-2015-6837,6838.patch
  - compare with SQL_NULL_DATA correctly [bnc#935074]
    + php-odbc-cmp-int-cast.patch
* Mon Sep 07 2015 abergmann@suse.com
  - added php5-fix_net-snmp_disable_MD5.patch:
    If MD5 was disabled in net-snmp we have to disable the used MD5
    function in ext/snmp/snmp.c as well. (bsc#944302)
* Thu Aug 27 2015 pgajdos@suse.com
  - updated suhosin to 0.9.38 [fate#319325]
    * removed php5-suhosin-php55.patch
* Tue Jul 28 2015 pgajdos@suse.com
  - security update:
    * CVE-2015-5590 [bnc#938719]
      + php-CVE-2015-5590.patch
    * CVE-2015-5589 [bnc#938721]
      + php-CVE-2015-5589.patch
* Thu Jun 18 2015 pgajdos@suse.com
  - security update:
    * CVE-2015-4602 [bnc#935224]
      + php-CVE-2015-4602.patch
    * CVE-2015-4599, CVE-2015-4600, CVE-2015-4601 [bnc#935226]
      + php-CVE-2015-4599,4600,4601.patch
    * CVE-2015-4603 [bnc#935234]
      + php-CVE-2015-4603.patch
    * CVE-2015-4644 [bnc#935274]
      + php-CVE-2015-4644.patch
    * CVE-2015-4643 [bnc#935275]
      + php-CVE-2015-4643.patch
    * CVE-2015-3411, CVE-2015-3412, CVE-2015-4598 [bnc#935277],
      [bnc#935232], [bnc#935234]
      + php-CVE-2015-3411,3412,4598.patch
* Mon Jun 08 2015 pgajdos@suse.com
  - configure php-fpm with --localstatedir=/var [bnc#927147]
* Thu Jun 04 2015 pgajdos@suse.com
  - security update:
    * CVE-2015-4148 [bnc#933227]
* Wed Jun 03 2015 pgajdos@suse.com
  - fix timezone map [bnc#919080]
* Fri May 22 2015 pgajdos@suse.com
  - security update:
    * CVE-2015-4024 [bnc#931421]
      + php-CVE-2015-4024.patch
    * CVE-2015-4026 [bnc#931776]
      + php-CVE-2015-4026.patch
    * CVE-2015-4022 [bnc#931772]
      + php-CVE-2015-4022.patch
    * CVE-2015-4021 [bnc#931769]
      + php-CVE-2015-4021.patch
* Fri Apr 24 2015 pgajdos@suse.com
  - security update:
    * CVE-2015-3330 [bnc#928408]
      + php-CVE-2015-3330.patch
    * CVE-2015-3329 [bnc#928506]
      + php-CVE-2015-3329.patch
    * CVE-2015-2783 [bnc#928511]
      + php-CVE-2015-2783.patch
* Wed Apr 01 2015 pgajdos@suse.com
  - security update:
    * CVE-2015-2787 [bnc#924972]
      + php-CVE-2015-2787.patch
    * unserialize SoapClient type confusion [bnc#925109]
      + php-unserialize-soap-type-confusion.patch
    * CVE-2015-2348 [bnc#924970]
      + php-CVE-2015-2348.patch
* Tue Mar 24 2015 pgajdos@suse.com
  - security update:
    * CVE-2014-9709 [bnc#923946]
      + php-CVE-2014-9709.patch
    * CVE-2015-2301 [bnc#922022]
      + php-CVE-2015-2301.patch
    * CVE-2015-2305 [bnc#922452]
      + php-CVE-2015-2305.patch
    * CVE-2014-9705 [bnc#922451]
      + php-CVE-2014-9705.patch
* Wed Feb 25 2015 pgajdos@suse.com
  - security update:
    * CVE-2015-0273 [bnc#918768]
      + php-CVE-2015-0273.patch
    * CVE-2014-9652 [bnc#917150]
      + php-CVE-2014-9652.patch
* Tue Dec 30 2014 pgajdos@suse.com
  - security update:
    * CVE-2014-8142 [bnc#910659]
      + php-CVE-2014-8142.patch
    * CVE-2015-0231 [bnc#910659]
      + php-CVE-2015-0231.patch
    * null ptr deref [bnc#910659]
      + php-unserialize-null-ptr-deref.patch
    * CVE-2014-9427 [bnc#911664]
      + php-CVE-2014-9427.patch
    * CVE-2015-0232 [bnc#914690]
      + php-CVE-2015-0232.patch
  - added added README.default_socket_timeout [bnc#907519]
* Mon Oct 27 2014 pgajdos@suse.com
  - security update:
    * CVE-2014-3670 [bnc#902357]
    * CVE-2014-3669 [bnc#902360]
    * CVE-2014-3668 [bnc#902368]
  - added patches:
    * php-CVE-2014-3670.patch
    * php-CVE-2014-3669.patch
    * php-CVE-2014-3668.patch
* Fri Aug 29 2014 pgajdos@suse.com
  - security update:
    * CVE-2014-5459 [bnc#893849]
    * CVE-2014-3597 [bnc#893853]
    * CVE-2014-5120 [bnc#893855]
  - added patches:
    * php-CVE-2014-3597.patch
    * php-CVE-2014-5120.patch
* Wed Jul 30 2014 pgajdos@suse.com
  - fixed crash when throwing and handling an exception in one
    finally block [bnc#868098]
  - that breaks Zend ABI 20121212
  - added patches:
    * php5-finally-exception-crash.patch
* Thu Jul 17 2014 pgajdos@suse.com
  - security update:
    * php-CVE-2014-4670.patch [bnc#886059]
    * php-CVE-2014-4698.patch [bnc#886060]
  - php-5.5.10-CVE-2014-2497.patch renamed to php-CVE-2014-2497.patch
    i
* Mon Jun 30 2014 pgajdos@suse.cz
  - updated to 5.5.14: This release fixes several bugs against
    PHP 5.5.13. Also, this release fixes a total of 8 CVEs,
    half of them concerning the FileInfo extension.
  - removed CVE-2014-4049.patch (upstreamed)
* Tue Jun 17 2014 pgajdos@suse.com
  - security update
    * php-5.5.13-CVE-2014-4049.patch [bnc#882992]
* Tue Jun 17 2014 pgajdos@suse.com
  - php5-5.5.10-CVE-2014-2497.patch renamed to
    php-5.5.10-CVE-2014-2497.patch to be consistent with other
    product php patches names
* Tue Jun 03 2014 pgajdos@suse.com
  - do not package latest_test_results.txt; instead, run build-test.sh
    twice: before and after source changes
* Mon Jun 02 2014 pgajdos@suse.com
  - updated to 5.5.13: This release fixes several bugs in PHP 5.5.12,
    and addresses two CVEs in Fileinfo (CVE-2014-0238 and CVE-2014-0237).
* Wed May 07 2014 pgajdos@suse.com
  - updated to 5.5.12: Fixed several bugs against PHP 5.5.11,
    as well as CVE-2014-0185 regarding PHP-FPM.
  - improved build-test.sh
* Wed Apr 30 2014 pgajdos@suse.com
  - build-test.sh: use relevant api for build; propagate build
    parameters to osc
* Wed Apr 30 2014 schwab@linux-m68k.org
  - php5-gcc_builtins.patch: remove unused patch
* Tue Apr 29 2014 pgajdos@suse.com
  - add build-test.sh and latest_test_results.txt for testing
    regressions in tests before and after update. Run
    sh build-test.sh
    after changes. php will get built and test results will be
    compared with latest_test_results.txt and differences reported.
    mv latest_test_results.txt.new latest_test_results.txt
    if differences are acceptable.
* Wed Apr 09 2014 pgajdos@suse.com
  - updated to 5.5.11:
    * Several bugs were fixed in this release, some bundled libraries
      updated and a security issue has been fixed : CVE-2013-7345.
* Fri Apr 04 2014 pgajdos@suse.com
  - fixed CVE-2014-2497 [bnc#868624]
* Mon Mar 17 2014 pgajdos@suse.com
  - updated to 5.5.10:
    * Several bugs were fixed in this release, including security
      issues related to CVEs. CVE-2014-1943, CVE-2014-2270 and
      CVE-2013-7327 have been addressed in this release.
* Tue Feb 11 2014 adaugherity@tamu.edu
  - Fix build on non-systemd distros (esp. SLES 11)
* Fri Feb 07 2014 pgajdos@suse.com
  - updated to 5.5.9:
    * This release fixes several bugs against PHP 5.5.8.
    * see NEWS or http://www.php.net/ChangeLog-5.php#5.5.9 for
      details
  - modified patches:
    * php5-no-build-date.patch (refreshed using quilt)
* Mon Jan 13 2014 pgajdos@suse.com
  - updated to 5.5.8:
    * fixes CVE-2013-6712 and build against freetype2
    * see http://www.php.net/ChangeLog-5.php#5.5.8
      for more
    * removed CVE-2013-6712.patch
    * removed freetype2_include_dir.patch
* Fri Dec 20 2013 hrvoje.senjan@gmail.com
  - Added php5-freetype2_include_dir.patch: Fixes check of freetype2
    headers, as freetype2 2.5.1 changed the header location
* Wed Dec 18 2013 pgajdos@suse.com
  - updated to 5.5.7:
    * fixes some bugs against PHP 5.5.6 and it also includes a fix
      for CVE-2013-6420 in OpenSSL extension
    - > removed CVE-2013-6420.patch
* Wed Dec 11 2013 pgajdos@suse.com
  - security update [bnc#854880]
    * added CVE-2013-6420.patch
* Tue Dec 03 2013 pgajdos@suse.com
  - security update [bnc#853045]
    * added CVE-2013-6712.patch
* Fri Nov 22 2013 pgajdos@suse.com
  - updated to 5.5.6:
    * fixes some bugs against PHP 5.5.5, and adds some performance
      improvements.
    * see http://www.php.net/ChangeLog-5.php#5.5.6 for details
* Fri Nov 22 2013 pgajdos@suse.com
  - updated to 5.5.5:
    * This release fixes about twenty bugs against PHP 5.5.4, some
      of them regarding the build system.
    * added sys_temp_dir ini directive
  - removed custom-tmp-dir.patch (upstreamed)
* Fri Nov 22 2013 pgajdos@suse.com
  - updated to 5.5.4:
    * This release fixes several bugs against PHP 5.5.3.
  - crypt-tests.patch partially upstreamed
  - use zend_extension instead of extension directive in opcache.ini
    [bnc#840350]
* Fri Nov 22 2013 pgajdos@suse.com
  - updated to 5.5.3: These release fix a bug in the patch for
    CVE-2013-4248 in OpenSSL module and compile failure with ZTS enabled
    in PHP 5.4.
* Fri Nov 22 2013 pgajdos@suse.com
  - updated to 5.5.2:
    * About 20 bugs were fixed, including security issue in OpenSSL
      module (CVE-2013-4248) and session fixation problem (CVE-2011-4718).
* Fri Nov 22 2013 pgajdos@suse.com
  - updated to 5.5.1
    * bugfixes incl. security fix in the XML parser
* Fri Nov 22 2013 Ralf Lang <lang@b1-systems.de>
  - replace php5-64-bit-post-large-files.patch with php5-big-file-upload.patch
    patch that uses def_t instead of signed long as suggested by upstream
* Fri Nov 22 2013 pgajdos@suse.com
  - updated to 5.5.0:
    * Added generators and coroutines.
    * Added the finally keyword.
    * Added a simplified password hashing API.
    * Added support for constant array/string dereferencing.
    * Added scalar class name resolution via ::class.
    * Added support for using empty() on the result of function
      calls and other expressions.
    * Added support for non-scalar Iterator keys in foreach.
    * Added support for list() constructs in foreach statements.
    * Added the Zend OPcache extension for opcode caching.
    * A lot more improvements and fixes.
    * PHP logo GUIDs have been removed.
    * Case insensitivity is no longer locale specific. All case
      insensitive matching for function, class and constant names
      is now performed in a locale independent manner according to
      ASCII rules.
  - buildrequire cyrus-sasl-devel explicitely
  - suhosin-php54.patch renamed to suhosin-php55.patch
* Mon Nov 18 2013 pgajdos@suse.com
  - update to 5.4.22:
    * About 10 bugs were fixed.
    * see http://www.php.net/ChangeLog-5.php#5.4.22 for details
* Wed Oct 30 2013 pgajdos@suse.com
  - updatedto 5.4.21:
    * About 10 bugs were fixed.
    * added custom-tmp-dir.patch by Per Jessen
* Sun Oct 13 2013 crrodriguez@opensuse.org
  - build with --with-fpm-systemd and install systemd unit
  - php5-systemd-unit.patch: tweak systemd unit for openSUSE requirements
  - php5-openssl.patch: only openSSL_config() is really needed.
  - Recommended for 13.1 and Factory
* Wed Sep 25 2013 pgajdos@suse.com
  - updated to 5.4.20:
    * About 30 bugs were fixed.
* Thu Sep 05 2013 pgajdos@suse.com
  - updated to 5.4.19:
    * These releases fix a bug in the patch for CVE-2013-4248 in
      OpenSSL module and compile failure with ZTS enabled in PHP 5.4.
* Tue Aug 20 2013 pgajdos@suse.com
  - updated to 5.4.18:
    * About 30 bugs were fixed, including security issues CVE-2013-4113
      and CVE-2013-4248.
* Thu Aug 01 2013 crrodriguez@opensuse.org
  - php5-per-mod-log.patch: It turns out that requesting per-module
    logging support in 2.4 will not do a thing if the expansion
    of APLOG_USE_MODULE is not visible to all files of the module
    so place it in the header instead.
* Wed Jul 31 2013 crrodriguez@opensuse.org
  - php5-per-mod-log.patch Support apache 2.4 per module logging
  - php5-apache24-updates.patch Use proper API in apache 2.4
    to determine when the module has to be loaded.
    I made this patches at least a year ago, but for some reason
    they went out of my radar and were not applied to upstream
    Will be submitted again soon.
* Mon Jul 15 2013 pgajdos@suse.com
  - updated to 5.4.17:
      Core:
      Fixed bug #64988 (Class loading order affects E_STRICT warning).
      Fixed bug #64966 (segfault in zend_do_fcall_common_helper_SPEC).
      Fixed bug #64960 (Segfault in gc_zval_possible_root).
      Fixed bug #64936 (doc comments picked up from previous scanner run).
      Fixed bug #64934 (Apache2 TS crash with get_browser()).
      Fixed bug #64166 (quoted-printable-encode stream filter incorrectly
      discarding whitespace).
      DateTime:
      Fixed bug #53437 (Crash when using unserialized DatePeriod instance).
      FPM:
      Fixed bug #64915 (error_log ignored when daemonize=0).
      Implemented FR #64764 (add support for FPM init.d script).
      PDO:
      Fixed bug #63176 (Segmentation fault when instantiate 2 persistent
      PDO to the same db server).
      PDO_DBlib:
      Fixed bug #63638 (Cannot connect to SQL Server 2008 with PDO dblib).
      Fixed bug #64338 (pdo_dblib can't connect to Azure SQL).
      Fixed bug #64808 (FreeTDS PDO getColumnMeta on a prepared but not
      executed statement crashes).
      PDO_firebird:
      Fixed bug #64037 (Firebird return wrong value for numeric field).
      Fixed bug #62024 (Cannot insert second row with null using
      parametrized query).
      PDO_mysql:
      Fixed bug #48724 (getColumnMeta() doesn't return native_type for BIT,
      TINYINT and YEAR).
      PDO_pgsql:
      Fixed bug #64949 (Buffer overflow in _pdo_pgsql_error).
      pgsql:
      Fixed bug #64609 (pg_convert enum type support).
      Readline:
      Implement FR #55694 (Expose additional readline variable to prevent
      default filename completion).
      SPL:
      Fixed bug #64997 (Segfault while using RecursiveIteratorIterator
      on 64-bits systems).
* Tue Jun 18 2013 jengelh@inai.de
  - Explicitly specify cyrus-sasl build dependency
* Thu Jun 13 2013 pgajdos@suse.com
  - updated to 5.4.16
  - Core:
    . Fixed bug #64879 (Heap based buffer overflow in quoted_printable_encode,
      CVE 2013-2110). (Stas)
    . Fixed bug #64853 (Use of no longer available ini directives causes crash on
      TS build). (Anatol)
    . Fixed bug #64729 (compilation failure on x32). (Gustavo)
    . Fixed bug #64720 (SegFault on zend_deactivate). (Dmitry)
    . Fixed bug #64660 (Segfault on memory exhaustion within function definition).
      (Stas, reported by Juha Kylmänen)
  - Calendar:
    . Fixed bug #64895 (Integer overflow in SndToJewish). (Remi)
  - Fileinfo:
    . Fixed bug #64830 (mimetype detection segfaults on mp3 file). (Anatol)
  - FPM:
    . Ignore QUERY_STRING when sent in SCRIPT_FILENAME. (Remi)
    . Fixed some possible memory or resource leaks and possible null dereference
      detected by code coverity scan. (Remi)
    . Log a warning when a syscall fails. (Remi)
    . Add --with-fpm-systemd option to report health to systemd, and
      systemd_interval option to configure this. The service can now use
      Type=notify in the systemd unit file. (Remi)
  - MySQLi
    . Fixed bug #64726 (Segfault when calling fetch_object on a use_result and DB
      pointer has closed). (Laruence)
  - Phar
    . Fixed bug #64214 (PHAR PHPTs intermittently crash when run on DFS, SMB or
      with non std tmp dir). (Pierre)
  - SNMP:
    . Fixed bug #64765 (Some IPv6 addresses get interpreted wrong).
      (Boris Lytochkin)
    . Fixed bug #64159 (Truncated snmpget). (Boris Lytochkin)
  - Streams:
    . Fixed bug #64770 (stream_select() fails with pipes returned by proc_open()
      on Windows x64). (Anatol)
  - Zend Engine:
    . Fixed bug #64821 (Custom Exceptions crash when internal properties
      overridden). (Anatol)
* Fri May 10 2013 pgajdos@suse.com
  - updated to 5.4.15:
      Core:
      Fixed bug #64578 (debug_backtrace in set_error_handler
      corrupts zend heap: segfault).
      Fixed bug #64458 (dns_get_record result with string of
      length -1).
      Fixed bug #64433 (follow_location parameter of context
      is ignored for most response codes).
      Fixed bug #47675 (fd leak on Solaris).
      Fixed bug #64577 (fd leak on Solaris).
      Fileinfo:
      Upgraded libmagic to 5.14.
      Streams:
      Fixed Windows x64 version of stream_socket_pair() and
      improved error handling.
      Zip:
      Fixed bug #64342 (ZipArchive::addFile() has to check
      for file existence).
* Fri Apr 26 2013 adaugherity@tamu.edu
  - Conflict with php53 packages so zypper doesn't suggest installing a
    mix of php53-* (from SLES 11) and php5-* (these 5.4 packages).
* Fri Apr 26 2013 adaugherity@tamu.edu
  - Fix build on SLES 11 (no firebird) and openSUSE <= 12.1 (no separate
    libfbclient2-devel pkg).
* Mon Apr 22 2013 pgajdos@suse.com
  - use current install-pear-nozlib.phar from
    http://pear.php.net/install-pear-nozlib.phar
  - php5-pear package provides/obsoletes php5-pear-Archive_Tar,
    see explanation in the spec
* Wed Apr 17 2013 slavb18@gmail.com
  - add php5-firebird providing php5-interbase and php5-pdo_firebird
* Mon Apr 15 2013 pgajdos@suse.com
  - updated to 5.4.14:
      Core:
      Fixed bug #64529 (Ran out of opcode space).
      Fixed bug #64515 (Memoryleak when using the same variablename
      two times in function declaration).
      Fixed bug #64432 (more empty delimiter warning in strX methods).
      Fixed bug #64417 (ArrayAccess::&offsetGet() in a trait causes
      fatal error).
      Fixed bug #64370 (microtime(true) less than $_SERVER['REQUEST_TIME_FLOAT']).
      Fixed bug #64239 (Debug backtrace changed behavior since 5.4.10
      or 5.4.11).
      Fixed bug #63976 (Parent class incorrectly using child constant
      in class property).
      Fixed bug #63914 (zend_do_fcall_common_helper_SPEC does not
      handle exceptions properly).
      Fixed bug #62343 (Show class_alias In get_declared_classes()).
      PCRE:
      Merged PCRE 8.32.
      SNMP:
      Fixed bug #61981 (OO API, walk: $suffix_as_key is not working correctly).
      Zip:
      Fixed bug #64452 (Zip crash intermittently). (Anatol)
* Mon Apr 15 2013 pgajdos@suse.com
  - libc-client.so needs -lssl
* Fri Apr 05 2013 pgajdos@suse.com
  - fixed 'http limits uploads to 2GB' [bnc#812800], see
    https://bugs.php.net/bug.php?id=44522
    * 64bit-post-large-files.patch
* Thu Mar 21 2013 pgajdos@suse.com
  - updated to 5.4.13:
      Core:
      Fixed bug #64235 (Insteadof not work for class method in 5.4.11).
      Implemented FR #64175 (Added HTTP codes as of RFC 6585).
      Fixed bug #64142 (dval to lval different behavior on ppc64).
      Fixed bug #64070 (Inheritance with Traits failed with error).
      CLI server:
      Fixed bug #64128 (buit-in web server is broken on ppc64).
      Mbstring:
      mb_split() can now handle empty matches like preg_split() does.
      OpenSSL:
      Fixed bug #61930 (openssl corrupts ssl key resource when using openssl_get_publickey()).
      PDO_mysql:
      Fixed bug #60840 (undefined symbol: mysqlnd_debug_std_no_trace_funcs).
      Phar:
      Fixed timestamp update on Phar contents modification.
      SOAP
      Added check that soap.wsdl_cache_dir conforms to open_basedir (CVE-2013-1635).
      Disabled external entities loading (CVE-2013-1643, CVE-2013-1824).
      SPL:
      Fixed bug #64264 (SPLFixedArray toArray problem).
      Fixed bug #64228 (RecursiveDirectoryIterator always assumes SKIP_DOTS).
      Fixed bug #64106 (Segfault on SplFixedArray[][x] = y when extended).
      Fixed bug #52861 (unset fails with ArrayObject and deep arrays).
      SNMP:
      Fixed bug #64124 (IPv6 malformed).
* Thu Mar 21 2013 pgajdos@suse.com
  - updated to 5.4.12:
    * dropped sqlite.so (no longer shipped with 5.4)
    * dropped t1lib support
    * dropped %{suse_version} 10.x support
    * see /usr/share/doc/packages/php5/UPGRADING or
      http://svn.php.net/viewvc/php/php-src/branches/PHP_5_4/UPGRADING
      for details
    * source changes:
      D    php-5.2.9-BNC-457056.patch -- renamed to php5-BNC-457056.patch
      D    php-5.3.0-bnc513080.patch -- there's no relevant code in exif.c
      D    php-5.3.1-systzdata-v7.patch -- renamed to php5-systzdata-v7.patch
      D    php-5.3.2-aconf26x.patch -- dropped, it is not needed yet
      D    php-5.3.2-ini.patch -- renamed to php5-ini.patch
      D    php-5.3.2-no-build-date.patch -- renamed to php5-no-build-date.patch
      D    php-5.3.22.tar.bz2 -- old tarball
      D    php-5.3.4-format-string-issues.patch -- renamed to php5-format-string-issues.patch
      D    php-5.3.4-pts.patch -- renamed to php5-pts.patch
      D    php-5.3.6-gcc_builtins.patch -- renamed to php5-gcc_builtins.patch
      D    php-5.3.6-ini-date.timezone.patch -- part of php5-ini.patch
      D    php-5.3.8-CVE-2011-4153.patch -- fixed in 5.4 branch
      D    php-5.3.8-crypt-tests.patch -- renamed to php5-crypt-tests.patch
      D    php-5.3.8-no-reentrant-crypt.patch -- renamed to php5-no-reentrant-crypt.patch
      A    php-5.4.13.tar.bz2 -- new version tarball
      D    php-cloexec.patch -- renamed to php5-cloexec.patch
      M    php-suse-addons.tar.bz2 -- content of tar balls are actualy equal
      A    php5-BNC-457056.patch -- renamed from php-5.2.9-BNC-457056.patch, not rebased
      A    php5-cloexec.patch -- renamed from php-cloexec.patch, rebased
      A    php5-sytzdata-v7.patch -- renamed from sytzdata-v7.pach, not rebased
      A    php-format-string-issues.patch -- renamed from php5-5.3.4-format-string-issues.patch, not rebased
      A    php5-crypt-tests.patch -- renamed from php-5.3.8-crypt-tests.patch, not rebased
      A    php5-gcc_builtins.patch -- renamed from php-5.3.6-gcc_builtins.patch, not rebased
      A    php5-ini.patch -- renamed from php-5.3.2-ini.patch, rebased
      A    php5-mbstring-missing-return.patch -- new patch, missing return
      M    php5-missing-extdeps.patch -- rebased
      A    php5-no-build-date.patch -- renamed from php-5.3.2-no-build-date.patch, rebased
      A    php5-no-reentrant-crypt.patch -- renamed from php-5.3.8-no-reentrant-crypt.patch, not rebased
      M    php5-openssl.patch -- rebased
      M    php5-phpize.patch -- rebased
      A    php5-pts.patch -- renamed from php-5.3.4-pts.patch, not rebased
      A    php5-suhosin-php54.patch -- patch on top of suhosin-0.9.33.tgz to work with php 5.4
      M    php5.changes -- this change log
      M    php5.spec -- new version, etc
      D    suhosin-patch-5.3.3-0.9.10.patch.gz -- dropped, seems not be used for some time
* Mon Feb 25 2013 pgajdos@suse.com
  - updated to 5.3.22:
    . Fixed bug #64099 (Wrong TSRM usage in zend_Register_class alias). (Johannes)
    . Fixed bug #63899 (Use after scope error in zend_compile). (Laruence)
    . Fixed bug #63943 (Bad warning text from strpos() on empty needle).
      (Laruence)
    . Fixed bug #55397 (comparsion of incomplete DateTime causes SIGSEGV).
      (Laruence, Derick)
    . Fixed bug #63999 (php with fpm fails to build on Solaris 10 or 11). (Adam)
    . Added check that soap.wsdl_cache_dir conforms to open_basedir
      (CVE-2013-1635). (Dmitry)
    . Disabled external entities loading (CVE-2013-1643). (Dmitry)
    . Fixed bug #64106 (Segfault on SplFixedArray[][x] = y when extended). (Nikita Popov)
* Thu Feb 07 2013 pgajdos@suse.com
  - updated to 5.3.21:
    * Fixed bug #63762 (Sigsegv when Exception::$trace is changed by user).
    * Fixed bug (segfault due to libcurl connection caching).
    * Fixed bug #63795 (CURL >= 7.28.0 no longer support value 1 for CURLOPT_SSL_VERIFYHOST).
    etc. see NEWS for details
* Thu Oct 18 2012 pgajdos@suse.com
  - fix CVE-2011-4153 CVE-2011-4153 [bnc#741859]
* Tue Oct 16 2012 coolo@suse.com
  - add explicit buildrequire on libbz2-devel
    (having to patch old .changes file to avoid "double entry")
* Thu Oct 11 2012 pgajdos@suse.com
  - updated to 5.3.17:
    * Fixed bug (segfault while build with zts and GOTO vm-kind)
    * Fixed bug #62844 (parse_url() does not recognize //
    * etc. see NEWS for details
* Mon Aug 27 2012 pgajdos@suse.com
  - use FilesMatch with 'SetHandler' rather than 'AddHandler'
    [bnc#775852]
* Mon Aug 27 2012 pgajdos@suse.com
  - updated to 5.3.16:
    * fixes over 20 bugs, see NEWS for more details
* Wed Jul 25 2012 pgajdos@suse.com
  - updated to 5.3.15:
    * fixes over 30 bugs and includes a fix for a security related
      overflow issue in the stream implementation (CVE-2012-2688)
      [bnc#772582] and open_basedir bypass, CVE-2012-3365 [bnc#772580]
* Mon Jun 18 2012 pgajdos@suse.com
  - updated to 5.3.14:
    * bug-fix release, see NEWS for details
* Fri May 25 2012 pgajdos@suse.com
  - updated to 5.3.13: various security fixes,
    CVE-2012-1823, CVE-2012-2311, CVE-2012-2335, CVE-2012-2336
    * removed php-5.3.10-pcre_fullinfo.patch
    * refreshed php-5.3.2-aconf26x.patch
* Thu Mar 08 2012 coolo@suse.com
  - fix license to spdx.org format
* Tue Feb 28 2012 pgajdos@suse.com
  - fixed build with new pcre (php bug 60986)
* Sat Feb 04 2012 crrodriguez@opensuse.org
  - Build with -fpie
* Thu Feb 02 2012 crrodriguez@opensuse.org
  - PHP 5.3.10, fixes CVE-2012-0830.
* Sat Jan 28 2012 crrodriguez@opensuse.org
  - remove unapplied patches
* Wed Jan 18 2012 pgajdos@suse.com
  - buildrequire libjpeg-devel
* Tue Jan 17 2012 pgajdos@suse.com
  - remove apache module conflict with apache2-worker [bnc#728671]
  - amended README.SUSE instead
* Wed Jan 11 2012 crrodriguez@opensuse.org
  - Update to version 5.3.9
    * Drop already applied patches
    * This update only contain minor bug fixes, it is a stop over
      php 5.4.0 that should be out very soon.
* Mon Jan 02 2012 pgajdos@suse.com
  - security update:
    * CVE-2011-4885 [bnc#738221] -- added max_input_vars directive
      to prevent attacks based on hash collisions
* Wed Dec 21 2011 coolo@suse.com
  - add autoconf as buildrequire to avoid implicit dependency
* Tue Dec 20 2011 pgajdos@suse.com
  - apache module conflicts with apache2-worker [bnc#728671]
* Fri Dec 16 2011 pgajdos@suse.com
  - security update:
    * CVE-2011-4566 [bnc#733590]
    * CVE-2011-1466 [bnc#736169]
* Tue Dec 06 2011 coolo@suse.com
  - fix license - there is no 3.1 version of php license
* Tue Nov 29 2011 pgajdos@suse.com
  - build php against system's libcrypt, which drops
    extended DES support
    * crypt-tests.patch
    * no-reentrant-crypt.patch
* Mon Nov 07 2011 pgajdos@suse.com
  - security update:
    CVE-2011-3379 [bnc#728350]
* Sun Sep 18 2011 crrodriguez@opensuse.org
  - Fix wrong PAGE_SIZE assumption, must use sysconf() instead
  - Fix integer overflow when attempting to use more than 2 Gb
    of memory.
* Mon Sep 05 2011 crrodriguez@opensuse.org
  - call openssl_config too in order to load user-provided
    engine configuration.
* Sat Sep 03 2011 crrodriguez@opensuse.org
  - Cleanup patches for upcoming release.
* Sun Aug 28 2011 andrea.turrini@gmail.com
  - Fixed typos in php5.spec
* Tue Aug 23 2011 crrodriguez@opensuse.org
  - Fix very publicized critical bug in crypt() implementation
* Fri Aug 12 2011 crrodriguez@opensuse.org
  - Add mssql support with freetds
  - Update PHP snapshot.
* Tue Aug 09 2011 crrodriguez@opensuse.org
  - Update snapshot, more static analyzer fixes.
* Sun Aug 07 2011 crrodriguez@opensuse.org
  - Update snapshot, fix converity warnings
* Fri Aug 05 2011 crrodriguez@opensuse.org
  - Update snapshot, several check if malloc() succeeded.
* Wed Aug 03 2011 crrodriguez@opensuse.org
  - Fix build in Factory
  - Fix Segfault with allow_call_time_pass_reference = Off
  - Using class constants in array definition fails
* Mon Aug 01 2011 crrodriguez@opensuse.org
  - Add sqlite3 session storage, this is no more than
    a forward port of already existent sqlite2 backend
* Sun Jul 31 2011 crrodriguez@opensuse.org
  - Update snap, PHP 5.3.7-RC4
* Wed Jul 27 2011 crrodriguez@opensuse.org
  - Update snapshot again.
* Sat Jul 23 2011 crrodriguez@opensuse.org
  - Update snapshot.
* Thu Jul 14 2011 crrodriguez@opensuse.org
  - is_a() function is throwing an annoying warning
    "Unknown class passed as parameter" which is noticeable when
    you use PEAR, fix it, if your code uses it you should be
    using the instanceof operator anyway.
  - Update bundled pear.
* Mon Jul 11 2011 crrodriguez@opensuse.org
  - Crash in gc_remove_zval_from_buffer CVE-NO-NAME
  - Crash in zend_mm_check_ptr // Heap corruption
* Wed Jul 06 2011 crrodriguez@opensuse.org
  - Fixed missing Expires and Cache-Control headers for ping and status pages
  - fix crypt() issue with overlong salt
  - Fixed bug #52935 (call exit in user_error_handler cause stream relate core).
* Mon Jun 27 2011 crrodriguez@opensuse.org
  - Fix crash in error_log (strlen with NULL)
  - Fixed exit at FPM startup on fpm_resources_prepare
  - Added master rlimit_files and rlimit_core
  - Removed pid in debug logs written by chrildren processes
  - Replaced shm_slots with a real scoreboard
* Wed Jun 22 2011 crrodriguez@opensuse.org
  - Enable mysqlnd compression protocol.
* Thu Jun 16 2011 crrodriguez@opensuse.org
  - Update snapshot to 5.3.7 RC1
* Tue Jun 14 2011 crrodriguez@opensuse.org
  - Allow bison 2.5
  -File path injection vulnerability in RFC1867 File upload CVE-2011-2202.
* Fri Jun 10 2011 crrodriguez@opensuse.org
  - Update 5.3 snap
  - Fix compiler failure that happended after compile error.
  - Stream not closed and error not returned when SSL CN_match fails.
* Mon Jun 06 2011 crrodriguez@opensuse.org
  - Update 5.3 snap
  - Update bundled PEAR
  - Case discrepancy in timezone names cause Uncaught exception and fatal error.
  - SEEK_CUR with 0 value, returns a warning
  - Restore fix: do not accept paths with NULL in them
* Fri Jun 03 2011 crrodriguez@opensuse.org
  - Update to version 5.3.6.201106031621
  - Crash when calling call_user_func with unknown function name
  - Fixed double registering of browscap ini directive
* Sun May 29 2011 crrodriguez@opensuse.org
  - Drop Update alternatives usage, there are no alternatives
    PHP4 is gone and PHP6 is not coming at any time soon.
  - Remove "mm" support from session module, virtually nothing
    uses it and it doesnt support proper locking, mount
    /var/lib/php5 in tmpfs instead.
* Sun May 29 2011 crrodriguez@opensuse.org
  - Update to 5.3.6.201105291701
    * Fixes random crash with apache2 SAPI and php_admin_value
    in virtualhost configuration.
* Fri May 20 2011 crrodriguez@opensuse.org
  - Update 5.3 branch
  - Fix a few memory leaks
  - Check if tempfile can be created in phar extension
  - Fix problems with __halt_compiler and imported namespaces
  - Properly handle out of memory conditions in mysqlnd
* Sat May 14 2011 crrodriguez@opensuse.org
  - Update 5.3 branch.
  - Fix user after free in xmlreader extension.
* Mon May 09 2011 crrodriguez@opensuse.org
  - Update to current 5.3 svn version.
  - For practical reasons now the hash extension is built-in,hence
    deprecates package php5-hash, it is nowdays required by the session
    and phar extensions but must be statically built to work.
  - Drop php5-session patch, needed only to workaround compile
    failure when hash extension is built as loadable extension.
  - php.ini now clearly says that by "3" in session.hash_function
    we mean SHA256.
* Fri Apr 29 2011 crrodriguez@opensuse.org
  - Update to a recent 5.3.x SVN version, mostly bug fixes
    * track_errors causes segfault
    * classes from dl()'ed extensions are not destroyed
    * Crash when assigning value to a dimension in a non-array
    * use-after-free in substr_replace()
* Wed Apr 13 2011 crrodriguez@opensuse.org
  - fix crash on destruction.
  - allow openssl extension to be built w/o SSLv2
* Tue Apr 05 2011 lang@b1-systems.de
  - Add a default to date.timezone  because php5 warns that this is a required setting and clutters up the output in zypper installations of pear packages and other places
  - Versions after 5.3.6 may make this fatal
* Sat Apr 02 2011 crrodriguez@opensuse.org
  - Intl extension failed to load [bnc#659868]
  - Fix update-alternatives usage,will be dropped in the future.
* Mon Mar 28 2011 sbutler1@illinois.edu
  - Add tcpd-devel for building the SNMP extension on SLE_10 and apache_server_SLE_10.
* Thu Mar 17 2011 crrodriguez@opensuse.org
  - Update to php 5.3.6 final
    * Enforce security in the fastcgi protocol parsing with fpm SAPI.
    * Fixed bug #54247 (format-string vulnerability on Phar). (CVE-2011-1153)
    * Fixed bug #54193 (Integer overflow in shmop_read()). (CVE-2011-1092)
    * Fixed bug #54055 (buffer overrun with high values for precision ini setting).
    * Fixed bug #54002 (crash on crafted tag in exif). (CVE-2011-0708)
    * Fixed bug #53885 (ZipArchive segfault with FL_UNCHANGED on empty archive). (CVE-2011-0421)
* Wed Mar 16 2011 crrodriguez@opensuse.org
  - Upgrade to PHP 5.3.6.RC3
    * Drop obsoleted patches
    * fix some rpmlint warnings
    * Hundreds of changes, see NEWS for details
* Wed Mar 09 2011 crrodriguez@opensuse.org
  - Fix more date in binaries causing pointless republish of pkgs.
* Fri Feb 25 2011 chris@computersalat.de
  - fix for macros.php
    o devel pkg must have Obsoletes/Provides: php-macros
* Tue Feb 22 2011 pgajdos@suse.cz
  - security fixes
    * CVE-2011-0420 [bnc#672933]
    * CVE-2011-0708 [bnc#671710]
* Thu Feb 10 2011 chris@computersalat.de
  - extend macros.php
    o __php, __phpize, __php_config, php_version
    o __pear, php_peardir, php_pearxmldir
    o php_pear_gen_filelist
  - add README.macros
* Thu Jan 13 2011 pgajdos@suse.cz
  - security fix:
    * fopen_https_proxy_auth_fix.patch [bnc#656523]
* Mon Jan 10 2011 cristian.rodriguez@opensuse.org
  - export PHP_MYSQLND_ENABLED=yes to solve the mysqlnd problem
    when extensions are built shared. [bnc#661464]
* Mon Jan 10 2011 cristian.rodriguez@opensuse.org
  - Go back to libmysql as there is currently no way
    to build shared mysql extensions with mysqlnd. [bnc#661464]
* Sun Jan 09 2011 cristian.rodriguez@opensuse.org
  - Use mysqlnd driver, this is a newer PHP-native mysql
    extension, that does not require external libraries.
    Now you can use mysql, mariadb or drizzle without extra libs.
    fixes bnc #661464 and other old feature requests.
* Thu Jan 06 2011 cristian.rodriguez@opensuse.org
  - Update to version 5.3.5, Critical Update
    * Fixed bug #53632 (PHP hangs on numeric value 2.2250738585072011e-308). (CVE-2010-4645)
    Only 32 bit binaries affected, confirmed in factory i586.
* Fri Dec 17 2010 cristian.rodriguez@opensuse.org
  - revert unsuitable patch php-5.3.4-dlopen.patch
* Tue Dec 14 2010 cristian.rodriguez@opensuse.org
  - Add  php-5.3.4-dlopen.patch from fedora,makes dlopen to use
    bind_now instead of lazy.
  - Compiler is now in C99 mode for both core and extensions.
* Tue Dec 14 2010 cristian.rodriguez@opensuse.org
  - fix format string bug in Phar extension I just found
    http://bugs.php.net/bug.php?id=53541 and the underlying
    issue, which is the lack of format attributes in several
    core prototypes.
* Mon Dec 13 2010 cristian.rodriguez@opensuse.org
  - Update to PHP 5.3.4 final
    * Fixed crash in zip extract method (possible CWE-170).
    * Paths with NULL in them (foo\0bar.txt) are now considered as invalid (CVE-2006-7243).
    * Fixed a possible double free in imap extension (Identified by Mateusz Kocielski). (CVE-2010-4150).
    * Fixed NULL pointer dereference in ZipArchive::getArchiveComment. (CVE-2010-3709).
    * Fixed possible flaw in open_basedir (CVE-2010-3436).
    * Fixed MOPS-2010-24, fix string validation. (CVE-2010-2950).
    * Fixed symbolic resolution support when the target is a DFS share.
    * Fixed bug #52929 (Segfault in filter_var with FILTER_VALIDATE_EMAIL with large amount of data) (CVE-2010-3710).
    * Key Bug Fixes in PHP 5.3.4 include:
    * Added stat support for zip stream.
    * Added follow_location (enabled by default) option for the http stream support.
    * Added a 3rd parameter to get_html_translation_table. It now takes a charset hint, like htmlentities et al.
    * Implemented FR #52348, added new constant ZEND_MULTIBYTE to detect zend multibyte at runtime.
    * Multiple improvements to the FPM SAPI.
    * Over 100 other bug fixes.
  - SUSE specific;
    * enable PTY support in proc_open (temporary)
* Wed Nov 24 2010 ro@suse.de
  - xft-config is gone
* Tue Nov 02 2010 cristian.rodriguez@opensuse.org
  - Update to 5.3.3_svn201011020214
    * Fix Performance issue, array_diff may take hours instead
    of seconds in some scenarios,regression appeared in version
    5.2.5
* Wed Oct 27 2010 cristian.rodriguez@opensuse.org
  - Update to 5.3.3_svn20101027xx
  - Fix init script again.
* Thu Oct 14 2010 crrodriguez@opensuse.org
  - update to 5.3.3_svn201010140300
  - Fix php-fpm init script.
* Sat Oct 09 2010 cristian.rodriguez@opensuse.org
  - Update to an slightly newer PHP 5.3.3.x snap, fixes
    around 100 bugs including open_basedir problems.
  - add the fpm sapi to the package.
* Tue Aug 03 2010 cristian.rodriguez@opensuse.org
  - Clarify changelog this update fixed:
    * VUL-0: php5 new unserialize() flaw CVE-2010-2225 [bnc#616232]
    * VUL-0: php5: MOPS-2010-021: fnmatch() Stack Exhaustion Vulnerability [bnc#605097]
    * VUL-0: php5: MOPS-2010-017: preg_quote() Interruption Information Leak [bnc#605100]
    * VUL-0: php5: MOPS-2010-022 use after free [bnc#609763]
    * VUL-0: php5-phar: MOPS-2010-0{24,25,26,27,28} format string bugs [bnc#609766]
    * VUL-0: php5: MOPS-2010-0{32,33,34} use space interruption in iconv functions [bnc#609768]
    * VUL-0: php5: MOPS-2010-0{36,37,38,39,40} userspace interruptions [bnc#609769]
    * VUL-0: php5: MOPS-2010-0{36..46} userspace interruptions [bnc#609769]
    * VUL-0: php5: MOPS-2010-047/048 information leak [bnc#612555]
    * VUL-0: php5: MOPS-2010-049/50/51/52/53/54/55 memory corruption and/or info leak [bnc#612556]
    * VUL-0: PHP5: Session Data Injection Vulnerability [bnc#619483]
    * VUL-0: PHP5: multiple heap based buffer overflows [bnc#619486]
    * bugzilla numbers 619487,619489,619469,609766..
* Tue Jul 20 2010 cristian.rodriguez@opensuse.org
  - Update to PHP 5.3.3 RC3
  - Massive lot of security fixes see list
    here http://www.php-security.org/category/vulnerabilities/index.html
* Tue Jun 01 2010 cristian.rodriguez@opensuse.org
  - possible fix for [bnc#610633]
* Fri Apr 16 2010 crrodriguez@opensuse.org
  - use FD_CLOEXEC flag to avoid annoying races.
* Sun Apr 04 2010 crrodriguez@opensuse.org
  - remove obsolete buildRequires
* Fri Apr 02 2010 crrodriguez@opensuse.org
  - remove build date from binaries so they dont get
    republished every time
  - fix invalid path
* Thu Apr 01 2010 crrodriguez@opensuse.org
  -  add missing patch, refresh patches with -p0
* Thu Apr 01 2010 crrodriguez@opensuse.org
  - Update to PHP 5.3.2, see NEWS for details
* Fri Mar 05 2010 dimstar@opensuse.org
  - Add php5-autoconf-2.65.patch to fix build with autoconf 2.65; it's
    a backported combination of svn commits 291283, 291284 and
    291332.
  - Workaround old php bug http://bugs.php.net/bug.php?id=21153 by
    replacing -ledit with -ledit -lncurses in the resulting configure
    scripts. This became apparent problem due to libedit being built
    with as-needed now.
  - Add php5-bug51224.patch to fix buffer overflows happening in
    strcpy. It;s a combination of upstream svn revs 284097 and 284099
* Sun Jan 17 2010 vuntz@opensuse.org
  - Remove unneeded gtk-devel BuildRequires.
* Mon Jan 11 2010 aj@suse.de
  - Remove obsolete build requires of orbit-devel.
* Tue Dec 22 2009 jengelh@medozas.de
  - avoid alignment crash on alignment-sensitive CPUs
    (bugs.php.net#46074)
* Wed Dec 02 2009 coolo@novell.com
  - update patch to fix build
* Tue Oct 06 2009 crrodriguez@opensuse.org
  - Fixed wrong harcoded mysql socket  [bnc#544516]
  - Fixed wrong default include_path
* Tue Sep 08 2009 crrodriguez@suse.de
  - make php5-pear noarch in Factory
* Wed Aug 26 2009 crrodriguez@suse.de
  - remove obsolete patches
  - apply ini patch
  - enable mhash compatibility in the hash extension and obsolete php5-mhash
  - add macros.php to the source list
* Mon Aug 24 2009 crrodriguez@suse.de
  - PHP read_exif_data() only returns the first letter of UTF-16 strings [bnc#518300]
* Sun Aug 23 2009 crrodriguez@suse.de
  - fix missing return values of suhosin extension
* Wed Aug 19 2009 crrodriguez@novell.com
  - fix build on CODE10 products
* Wed Aug 19 2009 crrodriguez@novell.com
  - fix horrible broken open_basedir functionality
* Sun Aug 16 2009 crrodriguez@suse.de
  - update suhosin extension to version 0.9.29
  - mysql extensions now use mysqlnd instead of libmysqlclient.
  - enable sqlite3 extension, part of the php5-sqlite package
  - enable enchant extension
  - enable fileinfo extension
  - enable intl extension
* Fri Aug 14 2009 crrodriguez@suse.de
  - add suhosin patch and newer suhosin extension for compatibility
    reasons
* Thu Aug 13 2009 crrodriguez@suse.de
  -  Upgrade to PHP 5.3, see http://www.php.net/ChangeLog-5.php
    for the huge list of changes
  -  remove dbase and ncurses extension
* Thu Jul 16 2009 coolo@novell.com
  - disable as-needed to fix build
* Fri Jun 19 2009 crrodriguez@suse.de
  - update to PHP 5.2.10
    * Fixed bug #48378 (exif_read_data() segfaults on certain corrupted .jpeg files)
    * Added "ignore_errors" option to http fopen wrapper. (David Zulke, Sara)
    * Fixed memory corruptions while reading properties of zip files. (Ilia)
    * Fixed memory leak in ob_get_clean/ob_get_flush. (Christian)
    * Fixed segfault on invalid session.save_path. (Hannes)
    * Fixed leaks in imap when a mail_criteria is used. (Pierre)
    * Changed default value of array_unique()'s optional sorting type parameter back to SORT_STRING to fix backwards compatibility breakage introduced in PHP 5.2.9. (Moriyoshi)
    * Fixed bug #47940 (memory leaks in imap_body). (Pierre, Jake Levitt)
    * Fixed bug #47903 ("@" operator does not work with string offsets). (Felipe)
    * Fixed bug #47644 (Valid integers are truncated with json_decode()). (Scott)
    * Fixed bug #47564 (unpacking unsigned long 32bit big endian returns wrong result). (Ilia)
    * Fixed bug #47365 (ip2long() may allow some invalid values on certain 64bit systems).
    * Over 100 bug fixes.
* Thu May 21 2009 crrodriguez@suse.de
  - add temporary backport of openssl prng function
* Sat Mar 14 2009 crrodriguez@suse.de
  - Update to version 5.2.9, security and bugfix release
    * VUL-0: php5: memory disclosure by imagerotate() [bnc#480850]
    * VUL-0: php5: mbstring.func_overload set in .htaccess becomes global [bnc#471419]
    * Fixed a segfault when malformed string is passed to json_decode()
    * Fixed explode() behavior with empty string to respect negative limit.

Files

/etc/php5/conf.d/ctype.ini
/usr/lib/php5/extensions/ctype.so


Generated by rpm2html 1.8.1

Fabrice Bellet, Thu Nov 23 23:29:45 2017