All releases tagged Version 4


Release Notes: This version continues to improve the security and the stability of the 4.4 branch and all users are strongly encouraged to upgrade to it as soon as possible. This release wraps up all the outstanding patches for the PHP 4.4 series, and is therefore the last PHP 4.4 release.


Release Notes: This release improves security and stability and all users are strongly encouraged to upgrade as soon as possible. This release wraps up all the outstanding patches for the PHP 4.4 series, and is therefore the last normal PHP 4.4 release.


Release Notes: Various security problems and about 10 other bugs were fixed.


Release Notes: This release addresses a crash problem with the session extension when register_globals is turned on that was introduced in PHP 4.4.5. This release also comes with the new version 7.0 of PCRE and it addresses a number of minor bugs.


No changes have been submitted for this release.


Release Notes: Prevents header injection by limiting each header to a single line. Fixes possible XSS inside error reporting functionality. Fixes missing safe_mode/open_basedir checks in the cURL extension. Fixes Apache 2 regression with sub-request handling on non-Linux systems. key() and current() regressions related to references have been fixed. This release also fixes about 30 other defects.


Release Notes: This version is a maintenance release that contains numerous bugfixes, including a number of security fixes related to the overwriting of the GLOBALS array. All users of PHP 4.3 and 4.4 are encouraged to upgrade to this version.


Release Notes: Man pages were added for the "phpize" and "php-config" scripts. Support for .cc files in extensions was added. The sorting flag SORT_LOCALE_STRING was added to the sort() functions, which makes them sort based on the current locale. sha1_file() and md5_file() functions were changed to use streams instead of low level I/O. Memory corruptions when using references in a wrong way were fixed. Memory corruption in pg_copy_from() was fixed in case the as_null parameter was passed. Memory corruption in stristr() was fixed. Various other bugs and fixes were made.


Release Notes: This is a maintenance release that in addition to non-critical bugfixes addresses several security issues.


Release Notes: This is a maintenance release that in addition to non-critical bugfixes addresses several very serious security issues.