Re: [PHP-DEV] PHP 5.4.16 and PHP 5.3.26 released!

2013-06-10 Thread Stas Malyshev
Hi! > Please also add html escaping for the entry (some entres contain i.e. "->") Done, added it to bin/news2html on phpweb. -- Stanislav Malyshev, Software Architect SugarCRM: http://www.sugarcrm.com/ (408)454-6900 ext. 227 -- PHP Internals - PHP Runtime Development Mailing List To unsubscri

Re: [PHP-DEV] PHP 5.4.16 and PHP 5.3.26 released!

2013-06-09 Thread Johannes Schlüter
Stas Malyshev wrote: >Hi! > >> be great. (Perfect would be if that script would also translate NEWS >> to HTML, see README.RELEASE_PROCESS for HTML requirements .. even > >Something like this: https://gist.github.com/smalyshev/5736464 > >If it looks good, I'll add it into phpWeb/bin. Please al

Re: [PHP-DEV] PHP 5.4.16 and PHP 5.3.26 released!

2013-06-08 Thread Stas Malyshev
Hi! > be great. (Perfect would be if that script would also translate NEWS > to HTML, see README.RELEASE_PROCESS for HTML requirements .. even Something like this: https://gist.github.com/smalyshev/5736464 If it looks good, I'll add it into phpWeb/bin. -- Stanislav Malyshev, Software Architect

Re: [PHP-DEV] PHP 5.4.16 and PHP 5.3.26 released!

2013-06-08 Thread Stas Malyshev
Hi! > Yes, they should be made public. Not doing this is a process issue. Rather absence of process issue - right now we pretty much have no process of handling security bugs. I'm trying to do what makes sense but sometimes things fall through the cracks - like forgetting to check all the bugs fo

Re: [PHP-DEV] PHP 5.4.16 and PHP 5.3.26 released!

2013-06-08 Thread Johannes Schlüter
Ferenc Kovacs wrote: >private bugs can be only accessed by the php security team and some >security >people from vendors: >http://git.php.net/?p=web/bugs.git;a=blob;f=include/trusted-devs.php >I think >that private bugs like that should be made public after the >fixed >version >release, just l

Re: [PHP-DEV] PHP 5.4.16 and PHP 5.3.26 released!

2013-06-07 Thread Ferenc Kovacs
On Fri, Jun 7, 2013 at 6:34 AM, Pierre Schmitz wrote: > Am 07.06.2013 01:58, schrieb Stas Malyshev: > > Hello! > > > > The PHP development team announces the immediate availability of PHP > > 5.4.16 and PHP 5.3.26. These releases fix about 15 bugs, including > > CVE-2013-2110. All users of PHP ar

Re: [PHP-DEV] PHP 5.4.16 and PHP 5.3.26 released!

2013-06-06 Thread Pierre Schmitz
Am 07.06.2013 01:58, schrieb Stas Malyshev: > Hello! > > The PHP development team announces the immediate availability of PHP > 5.4.16 and PHP 5.3.26. These releases fix about 15 bugs, including > CVE-2013-2110. All users of PHP are encouraged to upgrade to PHP 5.4.16. > PHP 5.3.26 is recommended