The PHP development team would like to announce the immediate availability of PHP 5.2.2 and availability of PHP 4.4.7. These releases are major stability and security enhancements of the 5.x and 4.4.x branches, and all users are strongly encouraged to upgrade to it as soon as possible. Further details about the PHP 5.2.2 release can be found in the release announcement for 5.2.2, the full list of changes is available in the ChangeLog for PHP 5. Details about the PHP 4.4.7 release can be found in the release announcement for 4.4.7, the full list of changes is available in the ChangeLog for PHP 4. Security Enhancements and Fixes in PHP 5.2.2 and PHP 4.4.7:
<ul>
</ul>Security Enhancements and Fixes in PHP 5.2.2 only:
<ul>
</ul>Security Enhancements and Fixes in PHP 4.4.7 only:
<ul><li>XSS in phpinfo() (MOPB-8 by Stefan Esser)</li></ul>While majority of the issues outlined above are local, in some circumstances given specific code paths they can be triggered externally. Therefor, we strongly recommend that if you use code utilizing the functions and extensions identified as having had vulnerabilities in them, you consider upgrading your PHP.
For users upgrading to PHP 5.2 from PHP 5.0 and PHP 5.1, an upgrade guide is available here, detailing the changes between those releases and PHP 5.2.2.
Links
http://www.php.net/
http://th.php.net/ChangeLog-5.php
http://th.php.net/manual/en/migration52.incompatible.php
http://th.php.net/ChangeLog-5.php (รอสักพัก… ขณะนี้ยังไม่มีีรายละเอียด changes log บนหน้าเพจ)