Edit report at https://bugs.php.net/bug.php?id=55235&edit=1
ID: 55235 User updated by: jym2307 at gmail dot com Reported by: jym2307 at gmail dot com Summary: venerability issue was found in libpng 1.2.44 which was used by PHP 5.3.7 RC3 Status: Closed Type: Bug Package: GD related Operating System: windows PHP Version: 5.3.7RC3 Assigned To: pajoye Block user comment: N Private report: N New Comment: thanks pajoye! will this be included in 5.3.7 RC4 ? Previous Comments: ------------------------------------------------------------------------ [2011-07-19 06:27:47] paj...@php.net This bug has been fixed in SVN. Snapshots of the sources are packaged every three hours; this change will be in the next snapshot. You can grab the snapshot at http://snaps.php.net/. For Windows: http://windows.php.net/snapshots/ Thank you for the report, and for helping us make PHP better. ------------------------------------------------------------------------ [2011-07-18 14:38:13] paj...@php.net No need to make it closed as you posted it on internals anyway and the CVE is public. ------------------------------------------------------------------------ [2011-07-18 13:56:57] jym2307 at gmail dot com Description: ------------ HI, A venerability issue was found in libpng 1.2.44 which was used by PHP 5.3.7 RC3. See PHP/ext/gd http://old.nabble.com/libpng-1.5.4%2C-1.4.8%2C-1.2.45%2C-and-1.0.55-are-available- to32013073.html#a32013073 I was wondering is it possible to upgrade the Libpng in PHP 5.3.7 (RC 4)? Thanks, James Test script: --------------- NA Expected result: ---------------- NA Actual result: -------------- NA ------------------------------------------------------------------------ -- Edit this bug report at https://bugs.php.net/bug.php?id=55235&edit=1