|
![]() [ View full size screenshot ] |
| Version | Date Released | Status | Release Notes |
| 5.4.3 | May 9, 2012 | New Release | · PHP 5.4.3 fixes a buffer overflow vulnerability in the apache_request_headers() (CVE-2012-2329). |
| 5.4.0 | Jan 5, 2012 | New Release | |
| 5.3.8 | Jan 5, 2012 | New Release | |
| 5.3.6 | Mar 18, 2011 | New Release | · Upgraded bundled Sqlite3 to version 3.7.4. (Ilia) · Upgraded bundled PCRE to version 8.11. (Ilia) |
| 5.3.5 | Jan 12, 2011 | New Release | · Fixed crash in zip extract method (possible CWE-170). · Paths with NULL in them (foo bar.txt) are now considered as invalid (CVE-2006-7243). · Fixed a possible double free in imap extension (Identified by Mateusz Kocielski). (CVE-2010-4150). · Fixed NULL pointer dereference in ZipArchive::getArchiveComment. (CVE-2010-3709). · Fixed possible flaw in open_basedir (CVE-2010-3436). · Fixed MOPS-2010-24, fix string validation. (CVE-2010-2950). · Fixed symbolic resolution support when the target is a DFS share. · Fixed bug #52929 (Segfault in filter_var with FILTER_VALIDATE_EMAIL with large amount of data) (CVE-2010-3710). |
| 5.3.3 | Aug 10, 2010 | New Release | This release focuses on improving the stability and security of the PHP 5.3.x branch with over 100 bug fixes, some of which are security related. All users are encouraged to upgrade to this release. |