From owner-freebsd-questions@FreeBSD.ORG Fri Oct 6 05:52:14 2006 Return-Path: X-Original-To: freebsd-questions@freebsd.org Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 34E7A16A40F for ; Fri, 6 Oct 2006 05:52:14 +0000 (UTC) (envelope-from freebsd-questions@m.gmane.org) Received: from ciao.gmane.org (main.gmane.org [80.91.229.2]) by mx1.FreeBSD.org (Postfix) with ESMTP id 2CD4943D5D for ; Fri, 6 Oct 2006 05:52:08 +0000 (GMT) (envelope-from freebsd-questions@m.gmane.org) Received: from list by ciao.gmane.org with local (Exim 4.43) id 1GVick-0000M3-2B for freebsd-questions@freebsd.org; Fri, 06 Oct 2006 07:51:54 +0200 Received: from 62-2-105-50.static.cablecom.ch ([62.2.105.50]) by main.gmane.org with esmtp (Gmexim 0.1 (Debian)) id 1AlnuQ-0007hv-00 for ; Fri, 06 Oct 2006 07:51:54 +0200 Received: from wolf by 62-2-105-50.static.cablecom.ch with local (Gmexim 0.1 (Debian)) id 1AlnuQ-0007hv-00 for ; Fri, 06 Oct 2006 07:51:54 +0200 X-Injected-Via-Gmane: http://gmane.org/ To: freebsd-questions@freebsd.org From: Alain Wolf Date: Fri, 06 Oct 2006 07:51:36 +0200 Lines: 78 Message-ID: References: <00aa01c6e8fa$fe19ce90$1200a8c0@gsicomp.on.ca> Mime-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit X-Complaints-To: usenet@sea.gmane.org X-Gmane-NNTP-Posting-Host: 62-2-105-50.static.cablecom.ch User-Agent: Thunderbird 1.5.0.7 (Windows/20060909) In-Reply-To: <00aa01c6e8fa$fe19ce90$1200a8c0@gsicomp.on.ca> X-Enigmail-Version: 0.94.0.0 OpenPGP: id=6CB1BC68; url=http://subkeys.pgp.net:11371/pks/lookup?op=get&search=0x579319666CB1BC68 Sender: news Subject: Re: port php5 - what I am supposed to do here? X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 06 Oct 2006 05:52:14 -0000 -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 On 06.10.2006 05:53, * Matt Emmerton wrote: > > You've established that the security issue doesn't apply to your > environment. > > 1) Add "DISABLE_VULNERABILITIES=yes" to /etc/make.conf > 2) Run "portupgrade -u" or "make install clean" > > Regards, > -- > Matt Emmerton > Thanks Matt, that did it. I knew it there was a way. :-) But then ... As everything was in sync again, I wanted to install the suhosin-patch And see what happens: === Patching for php5-5.1.6_1 === Applying distribution patches for php5-5.1.6_1 === Applying FreeBSD patches for php5-5.1.6_1 1 out of 1 hunks failed--saving rejects to Zend/zend_alloc.c.rej = Patch patch-Zend_zend_alloc.c failed to apply cleanly. = Patch(es) patch-TSRM_threads.m4 patch-Zend::zend.h applied cleanly. *** Error code 1 Stop in /usr/ports/lang/php5. :-( I found this stange as I read just before about the neweset patch in the cvs.ports list : On 05.10.2006 22:59, * Alex Dupre wrote: > ale 2006-10-05 20:59:17 UTC > > FreeBSD ports repository > > Modified files: > lang/php5 Makefile > Added files: > lang/php5/files patch-Zend_zend_alloc.c > Log: > Added safety checks against integer overflow. > Bump PORTREVISION. > While I'm here, I suggest all php users to use the suhosin patch > and suhosin extension to harden the php installation. > > Submitted by: simon > Obtained from: PHP CVS repo. > > Revision Changes Path > 1.102 +1 -1 ports/lang/php5/Makefile > 1.1 +21 -0 ports/lang/php5/files/patch-Zend_zend_alloc.c (new) > _______________________________________________ > cvs-ports@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/cvs-ports He suggests the suhosin patch but in my expirience it only builds without it. Anybody else got this kind of problems? -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.5 (MingW32) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iD8DBQFFJe7oV5MZZmyxvGgRAjZoAJ0SyNSh/fcW9lK276dEEEDwRhqK3gCgnQof mYeAV7bs8vFG4r8Cf3NxEU0= =WUVL -----END PGP SIGNATURE-----