xmlrpc-epi 0.54.2-1+deb7u1ubuntu0.14.04.2 source package in Ubuntu

Changelog

xmlrpc-epi (0.54.2-1+deb7u1ubuntu0.14.04.2) trusty-security; urgency=medium

  * Security merge from Debian
    - directly applied d/p/CVE-2016-6296.patch

xmlrpc-epi (0.54.2-1+deb7u1) wheezy-security; urgency=high

  * Non-maintainer upload by the Wheezy LTS Team.
  * CVE-2016-6296.patch
    Integer signedness error in the simplestring_addn function in
    simplestring.c in xmlrpc-epi through 0.54.2, as used in PHP
    before 5.5.38, 5.6.x before 5.6.24, and 7.x before 7.0.9, allows
    remote attackers to cause a denial of service (heap-based buffer
    overflow) or possibly have unspecified other impact via a long
    first argument to the PHP xmlrpc_encode_request function.

 -- Steve Beattie <email address hidden>  Fri, 19 Aug 2016 12:15:18 -0700

Upload details

Uploaded by:
Steve Beattie
Uploaded to:
Trusty
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
libs
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section
Trusty updates universe libs
Trusty security universe libs

Downloads

File Size SHA-256 Checksum
xmlrpc-epi_0.54.2.orig.tar.gz 514.1 KiB 397b60f39b51a339a2e505da1b9721a31c3e073aaac6c565de240f4e5356cf13
xmlrpc-epi_0.54.2-1+deb7u1ubuntu0.14.04.2.diff.gz 5.1 KiB 6af8c002c700b04db7db955ad1fe962f0f49d64cbe28440f384cb91b26daec4f
xmlrpc-epi_0.54.2-1+deb7u1ubuntu0.14.04.2.dsc 2.2 KiB 52ad51e6142c0949bbf9be825ce23b8e0d22c054711d07881b2647320cec2242

View changes file

Binary packages built by this source

libxmlrpc-epi-dev: Development files for libxmlrpc-epi0, a XML-RPC request library

 An implementation of the XML-RPC protocol, providing an API for developers to
 serialise RPC requests to and from XML. It does not include any transport layer
 and is therefor useful for applications which implement their own transport or
 wish to use XML-RPC over an existing transport layer. This package contains
 the development files for applications wishing to use libxmlrpc-epi.

libxmlrpc-epi-dev-dbgsym: debug symbols for package libxmlrpc-epi-dev

 An implementation of the XML-RPC protocol, providing an API for developers to
 serialise RPC requests to and from XML. It does not include any transport layer
 and is therefor useful for applications which implement their own transport or
 wish to use XML-RPC over an existing transport layer. This package contains
 the development files for applications wishing to use libxmlrpc-epi.

libxmlrpc-epi0: XML-RPC request serialisation/deserialisation library

 A library that implements a transportless implementation of the XML-RPC
 protocol.

libxmlrpc-epi0-dbg: Debug symbols for libxmlrpc-epi0, a XML-RPC request library

 This package contains the debug symbols for libxmlrpc-epi0, and should be
 installed if you wish to get stack traces into the library for debugging
 purposes.

libxmlrpc-epi0-dbgsym: debug symbols for package libxmlrpc-epi0

 A library that implements a transportless implementation of the XML-RPC
 protocol.