Bug#752366: [php-maint] Bug#752366: php5: Memory leak in FTPS functions results in denial of service

2014-07-21 Thread Ondřej Surý
Control: tags -1 + pending Yes, see: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=754275 O. On Mon, Jul 21, 2014, at 06:12, Ryan C. Underwood wrote: > > Hi, > > A new php5-5.4.4-14+deb7u12 was released without this fix. Would the > fix be included in the next stable/updates version then?

Bug#752366: [php-maint] Bug#752366: php5: Memory leak in FTPS functions results in denial of service

2014-07-20 Thread Ryan C. Underwood
Hi, A new php5-5.4.4-14+deb7u12 was released without this fix. Would the fix be included in the next stable/updates version then? Ryan On Mon, Jun 23, 2014 at 10:12:55AM +0200, Ondřej Surý wrote: > Hi Ryan, > > thanks for reporting the issue. We have an update queue in > stable-proposed-updat

Bug#752366: [php-maint] Bug#752366: php5: Memory leak in FTPS functions results in denial of service

2014-06-23 Thread Ondřej Surý
Hi Ryan, thanks for reporting the issue. We have an update queue in stable-proposed-updates right now with a bunch of upstream fixes that needs to be processed first, so we don't pile updates over updates. But I will merge fix for your issue into next s-p-u update, ok? Thanks, Ondrej On Mon, Ju

Bug#752366: php5: Memory leak in FTPS functions results in denial of service

2014-06-22 Thread Ryan Underwood
Package: php5 Version: 5.4.4-14+deb7u11 Severity: important php5 stable version has a gaping memory leak in SSL handling which was fixed upstream. http://git.php.net/?p=php-src.git;a=commitdiff;h=0863a0d6a0f740874b4ef8dc732a4ec94949470c Without this patch, a process which makes repeated FTP-SSL