[php-maint] PHP 5.2.8 in Lenny

Olivier Bonvalet olivier.bonvalet at daevel.fr
Wed Feb 11 10:58:08 UTC 2009


Hi Sean,

I've just identified the cause of my last bug, submitted a bug report, 
and they've commited a patch.

But I'm not sure it can be backport to Debian : the patch is not yet in 
an official PHP version and it's maybe to late for Lenny, no ?

Bug report : http://bugs.php.net/bug.php?id=47353
Patch : http://news.php.net/php.zend-engine.cvs/7395

Olivier

sean finney a écrit :
> hi olivier,
>
> thanks for the feedback.  we'll include the patches you dug up in an upload
> targeted for lenny.  regarding the last item:
>
>   
>> Suhosin continue to output this Warning (there is actually no crash) :
>>    ALERT - canary mismatch on efree() - heap overflow detected (attacker 
>> 'REMOTE_ADDR not set', file 'unknown')
>>     
>
> is it possible to run this script from the command line?  if so, you could
> possibly install php5-dbg and find the files involved when the error
> message occurs, which could be the first crumb on the trail through 
> cvs.php.net.
>
> there's another set of patches we may be importing from gentoo, so if you do
> find it there's still a chance for inclusion in lenny.
>
>
> 	sean
>   




More information about the pkg-php-maint mailing list