php 5.5.2 php开发小组宣布发布。大约20个bug是修复,包括安全问题,openssl中的模块和会话机制问题(cve-2013-4248)(cve-2011-4718)。鼓励所有的php用户升级到这个版本。
下载:http://www.php.net/downloads.php
修复的内容包括
core:
fixed bug #65372 (segfault in gc_zval_possible_root when return reference fails).
fixed value of filter_sanitize_full_special_chars constant (previously was erroneously set to filter_sanitize_special_chars value).
fixed bug #65304 (use of max int in array_sum).
fixed bug #65291 (get_defined_constants() causes php to crash in a very limited case).
fixed bug #62691 (solaris sed has no -i switch).
fixed bug #61345 (cgi mode - make install don't work).
fixed bug #61268 (--enable-dtrace leads make to clobber zend/zend_dtrace.d).
dom:
added flags option to domdocument::schemavalidate() and domdocument::schemavalidatesource(). added libxml_schema_create flag.
opcache:
added opcache.restrict_api configuration directive that may limit usage of opcahce api functions only to patricular script(s).
added support for glob symbols in blacklist entries (?, *, **).
fixed bug #65338 (enabling both php_opcache and php_wincache avs on shutdown).
openssl:
fixed handling null bytes in subjectaltname (cve-2013-4248).
pdo_mysql:
fixed bug #65299 (pdo mysql parsing errors).
phar:
fixed bug #65028 (phar::buildfromdirectory creates corrupt archives for some specific contents).
pgsql:
fixed bug #62978 (disallow possible sql injections with pg_select()/pg_update() /pg_delete()/pg_insert()).
fixed bug #65336 (pg_escape_literal/identifier() silently returns false).
sessions:
implemented strict sessions rfc (https://wiki.php.net/rfc/strict_sessions) which protects against session fixation attacks and session collisions (cve-2011-4718).
fixed possible buffer overflow under windows. note: not a security fix.
changed session.auto_start to php_ini_perdir.
soap:
fixed bug #65018 (soapheader problems with soapserver).
spl:
fixed bug #65328 (segfault when getting splstack object value).
added recursivetreeiterator setpostfix and getpostifx methods.
fixed bug #61697 (spl_autoload_functions returns lambda functions incorrectly).
streams:
fixed bug #65268 (select() implementation uses outdated tick api).
回复讨论(解决方案) php 5.4.18 已经用上了
php 5.5.2 暂时就算了
不确定更换操作系统后,我的bp股票数据源是否还能用
挣钱还是第一位的
那就升级吧,鼓励
几年不见,php增加了很多东西,发现。