Update Package to 7.2.14 or 15

Bug #1815464 reported by Tobias
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
php7.2 (Ubuntu)
Fix Released
Undecided
Karl Stenerud
Bionic
Fix Released
Undecided
Unassigned
Cosmic
Fix Released
Undecided
Unassigned

Bug Description

Hello there,

could you update the php7.2 package for ubuntu to version 7.2.14 or even 15 as it was released a few days ago?

in 7.2.14 was a fix for a possible DOS with a specially crafted DNS request ( https://bugs.php.net/bug.php?id=77369 ). As this bug could be abused via DNS spoofing it would be nice to include the fix from upstream in the ubuntu releases as well.

Thank you and have a nice day

Tobias

--

Not that it is relevant but:
lsb_release -rd

Description: Ubuntu 18.04.2 LTS
Release: 18.04

apt-cache policy php7.2

php7.2:
  Installiert: 7.2.10-0ubuntu0.18.04.1
  Installationskandidat: 7.2.10-0ubuntu0.18.04.1
  Versionstabelle:
 *** 7.2.10-0ubuntu0.18.04.1 500
        500 http://archive.ubuntu.com/ubuntu bionic-updates/main amd64 Packages
        500 http://archive.ubuntu.com/ubuntu bionic-updates/main i386 Packages
        500 http://security.ubuntu.com/ubuntu bionic-security/main amd64 Packages
        500 http://security.ubuntu.com/ubuntu bionic-security/main i386 Packages
        100 /var/lib/dpkg/status
     7.2.3-1ubuntu1 500
        500 http://archive.ubuntu.com/ubuntu bionic/main amd64 Packages
        500 http://archive.ubuntu.com/ubuntu bionic/main i386 Packages

tags: added: upgrade-software-version
Revision history for this message
Mike Salvatore (mikesalvatore) wrote :
Revision history for this message
Tobias (tobias-t42) wrote :

Thank you very much.
Do you know how long the review process usually takes until this package is promoted?

Greetings

Tobias

Revision history for this message
Mike Salvatore (mikesalvatore) wrote :

php 7.2.15 has been released for bionic 18.04 and cosmic 18.10. We're still working on Disco 19.04

Nish Aravamudan (nacc)
Changed in php7.2 (Ubuntu Bionic):
status: New → Fix Released
Changed in php7.2 (Ubuntu Cosmic):
status: New → Fix Released
Robie Basak (racb)
Changed in php7.2 (Ubuntu):
assignee: nobody → Karl Stenerud (kstenerud)
status: New → In Progress
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package php7.2 - 7.2.15-0ubuntu2

---------------
php7.2 (7.2.15-0ubuntu2) disco; urgency=medium

  * Fixup ICU handling
    - d/p/0050-intl-namespacing.patch: Reverted (removed)
    - d/p/0050-recommended-way-for-icu-namespace.patch: Use recommended way to
      handle the icu namespace
    - d/p/0051-Simplify-namespace-access.patch: Simplify ICU namespace access
    - d/p/0052-recommended-opts-for-unicodestring-ctor.patch: Use recommended
      options for explicit UnicodeString constructors
    - d/p/0053-use-non-deprecated-icu-api.patch: Move to non deprecated API on
      suitable ICU versions
    - d/p/0054-recommended-way-for-headers-symbols.patch: Use recommended way
      to handle utf*.h headers and obsolete symbols
    - d/p/0055-use-newer-icu-api.patch: Replace the deprecated API by the newer
      one available with ICU 56+
  * d/p/0056-disable-ext-curl-tests-bug48203_multi.patch: Temporarily
    disable ext/curl/tests/bug48203_multi.phpt to get tests reliably
    passing in disco.

php7.2 (7.2.15-0ubuntu1) disco; urgency=medium

  * Import 7.2.15 from upstream (LP: #1815464)
    - d/p/0001-0047 copied from cosmic-security 7.2.15-0ubuntu0.18.10.1.
      The changes are trivial, except that upstream cleared trailing
      whitespace in the source, which caused the patches to no longer apply.
    - d/p/0048 has been kept because it was present in existing disco 7.2.11
      release (bionic and cosmic changes were based off 7.2.10).
    - d/p/0049-ext-intl-Use-pkg-config-to-detect-icu.patch: Add patch to use
      pkg-config instead of icu-config to detect icu libraries (From debian
      patch to 7.3.1-2, closing 916110)
    - d/p/0050-intl-namespacing.patch: Update intl code to use c++ namespaces
      required by API of the latest libicu in disco. Upstream changes were
      spread over too many interspersed commits, so this was gleaned from a
      snapshot of 7.3.

 -- Karl Stenerud <email address hidden> Thu, 19 Mar 2019 17:28:20 +0100

Changed in php7.2 (Ubuntu):
status: In Progress → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.