php5 5.2.6.dfsg.1-3ubuntu4.6 source package in Ubuntu
Changelog
php5 (5.2.6.dfsg.1-3ubuntu4.6) jaunty-security; urgency=low * SECURITY UPDATE: denial of service via xmlrpc crafted argument - debian/patches/CVE-2010-0397.patch: make sure method_name isn't empty in ext/xmlrpc/xmlrpc-epi-php.c, add test to ext/xmlrpc/tests/bug51288.phpt. - CVE-2010-0397 * SECURITY UPDATE: weak entropy in Linear Congruential Generator (LCG) - debian/patches/CVE-2010-1128.patch: add more entropy in ext/standard/lcg.c. - CVE-2010-1128 * SECURITY UPDATE: safe_mode bypass via trailing slash in dir pathnames - debian/patches/CVE-2010-1129.patch: properly validate pathname in ext/standard/file.c. - CVE-2010-1129 * SECURITY UPDATE: safe_mode bypass via semicolon in session_save_path - debian/patches/CVE-2010-1130.patch: check for semicolon in ext/session/session.c. - CVE-2010-1130 * SECURITY UPDATE: arbitrary code execution via empty SQL query - debian/patches/CVE-2010-1868.patch: use ecalloc instead of emalloc in ext/sqlite/sqlite.c. - CVE-2010-1868 * SECURITY UPDATE: denial of service via fnmatch stack consumption - debian/patches/CVE-2010-1917.patch: limit size of pattern in ext/standard/file.c. - CVE-2010-1917 * SECURITY UPDATE: sensitive information disclosure or arbitrary code execution via use-after-free in SplObjectStorage unserializer - debian/patches/CVE-2010-2225.patch: fix logic in ext/spl/spl_observer.c. - CVE-2010-2225 * SECURITY UPDATE: sensitive information disclosure via error messages - debian/patches/CVE-2010-2531.patch: don't display data when flushing output buffer in ext/standard/{var.c,php_var.h}. - CVE-2010-2531 * SECURITY UPDATE: arbitrary session variable modification via crafted session variable name - debian/patches/CVE-2010-3065.patch: handle PS_UNDEF_MARKER marker in ext/session/session.c. - CVE-2010-3065 -- Marc Deslauriers <email address hidden> Tue, 14 Sep 2010 15:45:30 -0400
Upload details
- Uploaded by:
- Marc Deslauriers
- Uploaded to:
- Jaunty
- Original maintainer:
- Ubuntu Developers
- Architectures:
- any
- Section:
- web
- Urgency:
- Low Urgency
See full publishing history Publishing
Series | Published | Component | Section |
---|
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
php5_5.2.6.dfsg.1.orig.tar.gz | 11.6 MiB | 86c5040915321aea53d870c2b1ecb1dc048e60eaf6c7addc1d421f363e642a3a |
php5_5.2.6.dfsg.1-3ubuntu4.6.diff.gz | 202.6 KiB | a663e73e21f980535a2845af31f593261ac04091d55336c2a80b727ba2aafdf5 |
php5_5.2.6.dfsg.1-3ubuntu4.6.dsc | 2.5 KiB | 6b0a292c96f3af103f41cf9f6ea41ed4289048c3bca4b78ef978ba3e6d758231 |
Available diffs
Binary packages built by this source
- libapache2-mod-php5: No summary available for libapache2-mod-php5 in ubuntu jaunty.
No description available for libapache2-mod-php5 in ubuntu jaunty.
- libapache2-mod-php5filter: No summary available for libapache2-mod-php5filter in ubuntu jaunty.
No description available for libapache2-
mod-php5filter in ubuntu jaunty.
- php-pear: No summary available for php-pear in ubuntu jaunty.
No description available for php-pear in ubuntu jaunty.
- php5: No summary available for php5 in ubuntu jaunty.
No description available for php5 in ubuntu jaunty.
- php5-cgi: No summary available for php5-cgi in ubuntu jaunty.
No description available for php5-cgi in ubuntu jaunty.
- php5-cli: No summary available for php5-cli in ubuntu jaunty.
No description available for php5-cli in ubuntu jaunty.
- php5-common: No summary available for php5-common in ubuntu jaunty.
No description available for php5-common in ubuntu jaunty.
- php5-curl: No summary available for php5-curl in ubuntu jaunty.
No description available for php5-curl in ubuntu jaunty.
- php5-dbg: No summary available for php5-dbg in ubuntu jaunty.
No description available for php5-dbg in ubuntu jaunty.
- php5-dev: No summary available for php5-dev in ubuntu jaunty.
No description available for php5-dev in ubuntu jaunty.
- php5-gd: No summary available for php5-gd in ubuntu jaunty.
No description available for php5-gd in ubuntu jaunty.
- php5-gmp: No summary available for php5-gmp in ubuntu jaunty.
No description available for php5-gmp in ubuntu jaunty.
- php5-ldap: No summary available for php5-ldap in ubuntu jaunty.
No description available for php5-ldap in ubuntu jaunty.
- php5-mhash: No summary available for php5-mhash in ubuntu jaunty.
No description available for php5-mhash in ubuntu jaunty.
- php5-mysql: No summary available for php5-mysql in ubuntu jaunty.
No description available for php5-mysql in ubuntu jaunty.
- php5-odbc: No summary available for php5-odbc in ubuntu jaunty.
No description available for php5-odbc in ubuntu jaunty.
- php5-pgsql: No summary available for php5-pgsql in ubuntu jaunty.
No description available for php5-pgsql in ubuntu jaunty.
- php5-pspell: No summary available for php5-pspell in ubuntu jaunty.
No description available for php5-pspell in ubuntu jaunty.
- php5-recode: No summary available for php5-recode in ubuntu jaunty.
No description available for php5-recode in ubuntu jaunty.
- php5-snmp: No summary available for php5-snmp in ubuntu jaunty.
No description available for php5-snmp in ubuntu jaunty.
- php5-sqlite: No summary available for php5-sqlite in ubuntu jaunty.
No description available for php5-sqlite in ubuntu jaunty.
- php5-sybase: No summary available for php5-sybase in ubuntu jaunty.
No description available for php5-sybase in ubuntu jaunty.
- php5-tidy: No summary available for php5-tidy in ubuntu jaunty.
No description available for php5-tidy in ubuntu jaunty.
- php5-xmlrpc: No summary available for php5-xmlrpc in ubuntu jaunty.
No description available for php5-xmlrpc in ubuntu jaunty.
- php5-xsl: No summary available for php5-xsl in ubuntu jaunty.
No description available for php5-xsl in ubuntu jaunty.