Publishing details

Changelog

php7.4 (1:7.4.33-5+ubuntu20.04.1+deb.sury.org+1) focal; urgency=medium

  * No-change backport to focal

php7.4 (1:7.4.33-5) unstable; urgency=medium

  * Backported from 8.0.28
   + CVE-2023-0567: Fixed bug #81744 (Password_verify() always return true
     with some hash).
   + CVE-2023-0568: Fixed bug #81746 (1-byte array overrun in common path
     resolve code).
   + CVE-2023-0662: Fixed bug GHSA-54hq-v5wp-fqgv (DOS vulnerability when
     parsing multipart request body).

php7.4 (1:7.4.33-3) unstable; urgency=medium

  * Fix GH-10187: Segfault in stripslashes() with arm64

php7.4 (1:7.4.33-2) unstable; urgency=medium

  * Backported from 8.0.27
   + CVE-2022-31631: Fixed bug #81740 (PDO::quote() may return unquoted
     string).

php7.4 (1:7.4.33-1) unstable; urgency=medium

  * New upstream version 7.4.33
   + CVE-2022-37454: buffer overflow in hash_update() on long parameter
   + CVE-2022-31630: OOB read due to insufficient input validation in
     imageloadfont()

php7.4 (1:7.4.32-2) unstable; urgency=medium

  * Backported from PHP 7.4.33
   + CVE-2022-37454: buffer overflow in hash_update() on long parameter

php7.4 (1:7.4.32-1) unstable; urgency=medium

  * New upstream version 7.4.32
   + CVE-2022-31628: phar wrapper: DOS when using quine gzip file.
   + CVE-2022-31629: Don't mangle HTTP variable names that clash with
     ones that have a specific semantic meaning.

php7.4 (1:7.4.30-6) unstable; urgency=medium

  * Use media-types instead of mime-support (Closes: #1010155)
  * Make the build (mostly) reproducible (Closes: #1001648)
  * Export SED := /bin/sed in d/rules (Closes: #1015188)

php7.4 (1:7.4.30-5) unstable; urgency=medium

  * Add upstream patch for OpenSSL 3.0 unexpected EOF failure

php7.4 (1:7.4.30-4) unstable; urgency=medium

  * Fix detection of unknown gcc function attributes

php7.4 (1:7.4.30-3) unstable; urgency=medium

  * Revert "Add Provides: php-json to PHP SAPIS"

php7.4 (1:7.4.30-2) unstable; urgency=medium

  * Add Provides: php-json to PHP SAPIS

php7.4 (1:7.4.30-1) unstable; urgency=medium

  * New upstream version 7.4.30

php7.4 (1:7.4.29-2) unstable; urgency=medium

  * Add -DOPENSSL_SUPPRESS_DEPRECATED to CFLAGS to support OpenSSL 3.0
  * Add minimal OpenSSL 3.0 patch
  * Pull upstream patch to fix build with ICU >= 70
  * Add #include <stdbool.h> to ext/intl/ to have true/false available
  * Bump the epoch because Ubuntu 22.04 added libapache2-mod-php7.4
    dummy package versioned 8.1.x to help with upgrade and broke this
    package just for just everybody else. Yay!

php7.4 (7.4.29-1) unstable; urgency=medium

  * New upstream version 7.4.29

php7.4 (7.4.28-1) unstable; urgency=medium

  * New upstream version 7.4.28

php7.4 (7.4.27-1) unstable; urgency=medium

  * New upstream version 7.4.27

php7.4 (7.4.26-1) unstable; urgency=medium

  * New upstream version 7.4.26

php7.4 (7.4.25-3) unstable; urgency=medium

  [ Pino Toscano ]
  * Enable AppArmor (--with-fpm-apparmor) only on Linux archs
  * Fix Vcs-* fields

php7.4 (7.4.25-2) unstable; urgency=medium

  * No change bump, to override version in Debian bullseye

php7.4 (7.4.25-1) unstable; urgency=medium

  * New upstream version 7.4.25

php7.4 (7.4.24-1) unstable; urgency=medium

  * New upstream version 7.4.24

php7.4 (7.4.23-1) unstable; urgency=medium

  * New upstream version 7.4.23
  * Check for symlink before removing directory in the postrm scripts

php7.4 (7.4.22-1) unstable; urgency=medium

  * New upstream version 7.4.22

php7.4 (7.4.21-1) unstable; urgency=medium

  * New upstream version 7.4.21

php7.4 (7.4.20-1) unstable; urgency=medium

  * Disable LTO (needed for Ubuntu Hirsute) - now for real
  * New upstream version 7.4.20

php7.4 (7.4.18-2) unstable; urgency=medium

  * Disable LTO (needed for Ubuntu Hirsute)
  * Revert: Fix bug #80892 PDO::PARAM_INT on pdo_pgsql

php7.4 (7.4.18-1) unstable; urgency=medium

  * New upstream version 7.4.18

php7.4 (7.4.16-3) unstable; urgency=medium

  * Allow printing credits buffer larger than 4k

php7.4 (7.4.16-2) unstable; urgency=medium

  * Update the packaging credits

php7.4 (7.4.16-1) unstable; urgency=medium

  * New upstream version 7.4.16

php7.4 (7.4.15-7) unstable; urgency=medium

  * Bump php-common depends to 1:81~

php7.4 (7.4.15-6) unstable; urgency=medium

  * Add example configuration to not pass URLs for missing files to
    PHP-FPM

php7.4 (7.4.15-5) unstable; urgency=medium

  * Revert "Don't pass URLs for missing files to PHP-FPM"

php7.4 (7.4.15-4) unstable; urgency=medium

  [ Svante Signell ]
  * Add --without build-stamp to dh invocation
  * Add patch to disable HR Timers on GNU Hurd (Closes: 951834)

php7.4 (7.4.15-3) unstable; urgency=medium

  * Check if the logrotate script exists (GH #1534)

php7.4 (7.4.15-2) unstable; urgency=medium

  [ Sylvain Beucler ]
  * Update obsolete/non-free FPM configuration procedure (Closes: #974034)

  [ Ondřej Surý ]
  * Enable FPM ACL support (Closes: #982574)

  [ Kevin Locke ]
  * Don't pass URLs for missing files to PHP-FPM (Closes :#954850)

php7.4 (7.4.15-1) unstable; urgency=medium

  * New upstream version 7.4.15
  * Force hardcoded path to be /bin/sed (Closes: #960786)

php7.4 (7.4.14-1) unstable; urgency=medium

  * New upstream version 7.4.14

php7.4 (7.4.13-1) unstable; urgency=medium

  * New upstream version 7.4.13

php7.4 (7.4.12-3) unstable; urgency=medium

  * Copy the files from auxdir in a separate variable to sync with PHP 7.3
    and lower

php7.4 (7.4.12-2) unstable; urgency=medium

  * Move the non-m4 files from LIBTOOL_FILES to FILES_BUILD

php7.4 (7.4.12-1) unstable; urgency=medium

  * New upstream version 7.4.12
  * Move the system wide phpize files to LIBTOOL_FILES

php7.4 (7.4.11-6) unstable; urgency=medium

  * Fix typo in phpize script

php7.4 (7.4.11-5) unstable; urgency=medium

  * In phpize, copy the foreign files from their respective packages
    (libtool, pkg-config, shtool)

php7.4 (7.4.11-4) unstable; urgency=medium

  * Include all libtool files from phpize.m4

php7.4 (7.4.11-3) unstable; urgency=medium

  [ Chris Hofstaedtler ]
  * Use netcat-openbsd to build instead of netcat-traditional (Closes: #963261)

  [ Pino Toscano ]
  * Disable AppArmor support on non-Linux archs (Closes: #951857)
  * Enable systemd integration only on Linux archs (Closes: #951834)

  [ Ondřej Surý ]
  * Use system-wide pkg.m4 from pkg-config package in phpize
  * Restore the patch to use system-wide libtool and pkg-config m4 files

php7.4 (7.4.11-2) unstable; urgency=medium

  * Disable the MySQL extension testing as it's too complicated

php7.4 (7.4.11-1) unstable; urgency=medium

  * New upstream version 7.4.11

php7.4 (7.4.10-1) unstable; urgency=medium

  * New upstream version 7.4.10
  * Lower the minimal debhelper dependency to >= 9.20150101~
  * Use libenchant-dev as Build-Depends alternative to libenchant-2-dev
  * Remove deprecated calls from enchant-2 (Closes: #954855)

php7.4 (7.4.9-2) unstable; urgency=medium

  * Pull upstream patch for enchant-2 and change build-dep (Closes: #954855)

php7.4 (7.4.9-1) unstable; urgency=medium

  * New upstream version 7.4.9

php7.4 (7.4.8-1) unstable; urgency=medium

  * Finish updating the packaging to dh compat level 10
  * New upstream version 7.4.8
  * Adjust for upstream phar.phar -> phar7.4.phar binary rename

php7.4 (7.4.7-1) unstable; urgency=medium

  * New upstream version 7.4.7

php7.4 (7.4.6-1) unstable; urgency=medium

  * Properly detect CRC32 APIs on aarch64 from configure
  * New upstream version 7.4.6

php7.4 (7.4.5-1) unstable; urgency=medium

  * New upstream version 7.4.5

php7.4 (7.4.4-1) unstable; urgency=medium

  * Add (non-existent yet) systemd-tmpfiles package as alternative to systemd
  * php-fpm has to depend on procps due kill usage in systemd service file
    (Closes: #861855)
  * New upstream version 7.4.4

 -- Ondřej Surý <email address hidden>  Tue, 14 Feb 2023 19:31:23 +0100

Available diffs

Builds

Built packages

Package files