Debian Bug report logs - #529278
curl_read callback returns -1 when needs to return size_t (unsigned)

version graph

Package: php5-curl; Maintainer for php5-curl is (unknown);

Reported by: Alexander Over <alexander.over@gmx.de>

Date: Mon, 18 May 2009 11:54:02 UTC

Severity: normal

Tags: fixed-upstream

Found in version 5.2.6.dfsg.1-1+lenny3

Fixed in version 5.3.3-7

Done: Ondřej Surý <ondrej@sury.org>

Bug is archived. No further changes may be made.

Forwarded to http://bugs.php.net/bug.php?id=45220

Toggle useless messages

View this report as an mbox folder, status mbox, maintainer mbox


Report forwarded to debian-bugs-dist@lists.debian.org, Debian PHP Maintainers <pkg-php-maint@lists.alioth.debian.org>:
Bug#529278; Package php5-curl. (Mon, 18 May 2009 11:54:04 GMT) (full text, mbox, link).


Acknowledgement sent to Alexander Over <alexander.over@gmx.de>:
New Bug report received and forwarded. Copy sent to Debian PHP Maintainers <pkg-php-maint@lists.alioth.debian.org>. (Mon, 18 May 2009 11:54:04 GMT) (full text, mbox, link).


Message #5 received at submit@bugs.debian.org (full text, mbox, reply):

From: Alexander Over <alexander.over@gmx.de>
To: submit@bugs.debian.org
Subject: Bug
Date: Mon, 18 May 2009 13:51:20 +0200
Package: php5-curl
Version: 5.2.6.dfsg.1-1+lenny3

The following PHP Bug is also affects Lenny:

http://bugs.php.net/bug.php?id=45220





Noted your statement that Bug has been forwarded to http://bugs.php.net/bug.php?id=45220. Request was from Raphael Geissert <geissert@debian.org> to control@bugs.debian.org. (Thu, 09 Jul 2009 03:03:02 GMT) (full text, mbox, link).


Changed Bug title to `curl_read callback returns -1 when needs to return size_t (unsigned)' from `Bug'. Request was from Raphael Geissert <geissert@debian.org> to control@bugs.debian.org. (Thu, 09 Jul 2009 03:03:03 GMT) (full text, mbox, link).


Tags added: fixed-upstream Request was from bts-link-upstream@lists.alioth.debian.org to control@bugs.debian.org. (Mon, 20 Jul 2009 20:15:18 GMT) (full text, mbox, link).


Information forwarded to debian-bugs-dist@lists.debian.org, Debian PHP Maintainers <pkg-php-maint@lists.alioth.debian.org>:
Bug#529278; Package php5-curl. (Mon, 22 Feb 2010 22:30:05 GMT) (full text, mbox, link).


Acknowledgement sent to Raphael Geissert <geissert@debian.org>:
Extra info received and forwarded to list. Copy sent to Debian PHP Maintainers <pkg-php-maint@lists.alioth.debian.org>. (Mon, 22 Feb 2010 22:30:05 GMT) (full text, mbox, link).


Message #16 received at 529278@bugs.debian.org (full text, mbox, reply):

From: Raphael Geissert <geissert@debian.org>
To: 529278@bugs.debian.org
Cc: ,control@bugs.debian.org
Subject: [debian/debian-lenny] Fix an integer overflow on the curl_read callback (Closes: #529278)
Date: Mon, 22 Feb 2010 22:27:14 +0000
tag 529278 pending
thanks

Date: Sun Jan 24 19:44:06 2010 -0600
Author: Raphael Geissert <geissert@debian.org>
Commit ID: b6ae58ea8f646788f8937944e72293d37f6c4292
Commit URL: http://git.debian.org/?p=pkg-php/php.git;a=commitdiff;h=b6ae58ea8f646788f8937944e72293d37f6c4292
Patch URL: http://git.debian.org/?p=pkg-php/php.git;a=commitdiff_plain;h=b6ae58ea8f646788f8937944e72293d37f6c4292

    Fix an integer overflow on the curl_read callback (Closes: #529278)

      




Added tag(s) pending. Request was from Raphael Geissert <geissert@debian.org> to control@bugs.debian.org. (Mon, 22 Feb 2010 22:30:16 GMT) (full text, mbox, link).


Reply sent to Ondřej Surý <ondrej@sury.org>:
You have taken responsibility. (Wed, 27 Apr 2011 08:33:45 GMT) (full text, mbox, link).


Notification sent to Alexander Over <alexander.over@gmx.de>:
Bug acknowledged by developer. (Wed, 27 Apr 2011 08:33:45 GMT) (full text, mbox, link).


Message #23 received at 529278-done@bugs.debian.org (full text, mbox, reply):

From: Ondřej Surý <ondrej@sury.org>
To: 465081-done@bugs.debian.org, 537794-done@bugs.debian.org, 553048-done@bugs.debian.org, 574610-done@bugs.debian.org, 584885-done@bugs.debian.org, 584957-done@bugs.debian.org, 594613-done@bugs.debian.org, 493045-done@bugs.debian.org, 549492-done@bugs.debian.org, 450581-done@bugs.debian.org, 502174-done@bugs.debian.org, 543177-done@bugs.debian.org, 547134-done@bugs.debian.org, 552089-done@bugs.debian.org, 556523-done@bugs.debian.org, 559273-done@bugs.debian.org, 576147-done@bugs.debian.org, 578754-done@bugs.debian.org, 601602-done@bugs.debian.org, 609355-done@bugs.debian.org, 419649-done@bugs.debian.org, 442063-done@bugs.debian.org, 500567-done@bugs.debian.org, 513429-done@bugs.debian.org, 528600-done@bugs.debian.org, 597650-done@bugs.debian.org, 603641-done@bugs.debian.org, 405067-done@bugs.debian.org, 430397-done@bugs.debian.org, 440775-done@bugs.debian.org, 591759-done@bugs.debian.org, 565387-done@bugs.debian.org, 507762-done@bugs.debian.org, 529278-done@bugs.debian.org, 556459-done@bugs.debian.org
Subject: Closing segfaults (and some other minor bugs) for version older than squeeze (5.3.3)
Date: Wed, 27 Apr 2011 10:28:24 +0200
Version: 5.3.3-7

Hi,

since lenny is oldstable it will not get any updates now (except
security)[1], I am closing all segfault bugs filled against php5 in
lenny. (This is kind of saying that we don't care much about php5 in
lenny anymore).

If you believe the bug is still there, please provide evidence[2] and
a (preferably complete) test case with up-to-date squeeze (and/or
testing or unstable) version of php5 and reopen the bug.

O.
1. http://wiki.debian.org/PHP#Notes_on_PHP_and_security
2. Install php5-dbg and provide backtrace:
http://bugs.php.net/bugs-generating-backtrace.php
-- 
Ondřej Surý <ondrej@sury.org>




Bug archived. Request was from Debbugs Internal Request <owner@bugs.debian.org> to internal_control@bugs.debian.org. (Thu, 26 May 2011 07:40:16 GMT) (full text, mbox, link).


Send a report that this bug log contains spam.


Debian bug tracking system administrator <owner@bugs.debian.org>. Last modified: Sun Jul 2 01:14:18 2023; Machine Name: bembo

Debian Bug tracking system

Debbugs is free software and licensed under the terms of the GNU Public License version 2. The current version can be obtained from https://bugs.debian.org/debbugs-source/.

Copyright © 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson, 2005-2017 Don Armstrong, and many other contributors.