Edit report at https://bugs.php.net/bug.php?id=55235&edit=1
ID: 55235
User updated by: jym2307 at gmail dot com
Reported by: jym2307 at gmail dot com
Summary: venerability issue was found in libpng 1.2.44 which
was used by PHP 5.3.7 RC3
Status: Closed
Type: Bug
Package: GD related
Operating System: windows
PHP Version: 5.3.7RC3
Assigned To: pajoye
Block user comment: N
Private report: N
New Comment:
thanks pajoye!
will this be included in 5.3.7 RC4 ?
Previous Comments:
------------------------------------------------------------------------
[2011-07-19 06:27:47] [email protected]
This bug has been fixed in SVN.
Snapshots of the sources are packaged every three hours; this change
will be in the next snapshot. You can grab the snapshot at
http://snaps.php.net/.
For Windows:
http://windows.php.net/snapshots/
Thank you for the report, and for helping us make PHP better.
------------------------------------------------------------------------
[2011-07-18 14:38:13] [email protected]
No need to make it closed as you posted it on internals anyway and the CVE is
public.
------------------------------------------------------------------------
[2011-07-18 13:56:57] jym2307 at gmail dot com
Description:
------------
HI,
A venerability issue was found in libpng 1.2.44 which was used by PHP
5.3.7 RC3. See PHP/ext/gd
http://old.nabble.com/libpng-1.5.4%2C-1.4.8%2C-1.2.45%2C-and-1.0.55-are-available-
to32013073.html#a32013073
I was wondering is it possible to upgrade the Libpng in PHP 5.3.7 (RC 4)?
Thanks,
James
Test script:
---------------
NA
Expected result:
----------------
NA
Actual result:
--------------
NA
------------------------------------------------------------------------
--
Edit this bug report at https://bugs.php.net/bug.php?id=55235&edit=1