php5 5.3.2-1ubuntu4.28 source package in Ubuntu

Changelog

php5 (5.3.2-1ubuntu4.28) lucid-security; urgency=medium

  * SECURITY UPDATE: denial of service via buffer overflow in mkgmtime()
    - debian/patches/CVE-2014-3668.patch: properly handle sizes in
      ext/xmlrpc/libxmlrpc/xmlrpc.c, added test to
      ext/xmlrpc/tests/bug68027.phpt.
    - CVE-2014-3668
  * SECURITY UPDATE: integer overflow in unserialize()
    - debian/patches/CVE-2014-3669.patch: fix overflow in
      ext/standard/var_unserializer.{c,re}, added test to
      ext/standard/tests/serialize/bug68044.phpt.
    - CVE-2014-3669
  * SECURITY UPDATE: Heap corruption in exif_thumbnail()
    - debian/patches/CVE-2014-3670.patch: fix sizes in ext/exif/exif.c.
    - CVE-2014-3670
  * SECURITY UPDATE: out of bounds read in elf note headers in fileinfo()
    - debian/patches/CVE-2014-3710.patch: validate note headers in
      ext/fileinfo/libmagic/readelf.c.
    - CVE-2014-3710
  * SECURITY UPDATE: local file disclosure via curl NULL byte injection
    - debian/patches/curl_embedded_null.patch: don't accept curl options
      with embedded NULLs in ext/curl/interface.c, added test to
      ext/curl/tests/bug68089.phpt.
    - No CVE number
 -- Marc Deslauriers <email address hidden>   Tue, 28 Oct 2014 15:17:04 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Lucid
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
php
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
php5_5.3.2.orig.tar.gz 13.1 MiB a61f02b3b0a83c5a5b8b71a55c5760d1fb7290f1ec84eef1bdb8e8850a828f2f
php5_5.3.2-1ubuntu4.28.diff.gz 272.8 KiB a147a40fcdbddfac432f889a361d2b4de10804f498f2098223a466986c29cfb9
php5_5.3.2-1ubuntu4.28.dsc 3.1 KiB 2a070ec4223b8b856888517f085e92fe988d5a204657169a23f0893ff9acc8cd

View changes file

Binary packages built by this source

libapache2-mod-php5: No summary available for libapache2-mod-php5 in ubuntu lucid.

No description available for libapache2-mod-php5 in ubuntu lucid.

libapache2-mod-php5filter: No summary available for libapache2-mod-php5filter in ubuntu lucid.

No description available for libapache2-mod-php5filter in ubuntu lucid.

php-pear: No summary available for php-pear in ubuntu lucid.

No description available for php-pear in ubuntu lucid.

php5: No summary available for php5 in ubuntu lucid.

No description available for php5 in ubuntu lucid.

php5-cgi: No summary available for php5-cgi in ubuntu lucid.

No description available for php5-cgi in ubuntu lucid.

php5-cli: No summary available for php5-cli in ubuntu lucid.

No description available for php5-cli in ubuntu lucid.

php5-common: No summary available for php5-common in ubuntu lucid.

No description available for php5-common in ubuntu lucid.

php5-curl: No summary available for php5-curl in ubuntu lucid.

No description available for php5-curl in ubuntu lucid.

php5-dbg: No summary available for php5-dbg in ubuntu lucid.

No description available for php5-dbg in ubuntu lucid.

php5-dev: No summary available for php5-dev in ubuntu lucid.

No description available for php5-dev in ubuntu lucid.

php5-enchant: No summary available for php5-enchant in ubuntu lucid.

No description available for php5-enchant in ubuntu lucid.

php5-gd: No summary available for php5-gd in ubuntu lucid.

No description available for php5-gd in ubuntu lucid.

php5-gmp: No summary available for php5-gmp in ubuntu lucid.

No description available for php5-gmp in ubuntu lucid.

php5-intl: No summary available for php5-intl in ubuntu lucid.

No description available for php5-intl in ubuntu lucid.

php5-ldap: No summary available for php5-ldap in ubuntu lucid.

No description available for php5-ldap in ubuntu lucid.

php5-mysql: No summary available for php5-mysql in ubuntu lucid.

No description available for php5-mysql in ubuntu lucid.

php5-odbc: No summary available for php5-odbc in ubuntu lucid.

No description available for php5-odbc in ubuntu lucid.

php5-pgsql: No summary available for php5-pgsql in ubuntu lucid.

No description available for php5-pgsql in ubuntu lucid.

php5-pspell: No summary available for php5-pspell in ubuntu lucid.

No description available for php5-pspell in ubuntu lucid.

php5-recode: No summary available for php5-recode in ubuntu lucid.

No description available for php5-recode in ubuntu lucid.

php5-snmp: No summary available for php5-snmp in ubuntu lucid.

No description available for php5-snmp in ubuntu lucid.

php5-sqlite: No summary available for php5-sqlite in ubuntu lucid.

No description available for php5-sqlite in ubuntu lucid.

php5-sybase: No summary available for php5-sybase in ubuntu lucid.

No description available for php5-sybase in ubuntu lucid.

php5-tidy: No summary available for php5-tidy in ubuntu lucid.

No description available for php5-tidy in ubuntu lucid.

php5-xmlrpc: No summary available for php5-xmlrpc in ubuntu lucid.

No description available for php5-xmlrpc in ubuntu lucid.

php5-xsl: No summary available for php5-xsl in ubuntu lucid.

No description available for php5-xsl in ubuntu lucid.