php5 5.3.2-1ubuntu4.17 source package in Ubuntu

Changelog

php5 (5.3.2-1ubuntu4.17) lucid-security; urgency=low

  * SECURITY UPDATE: denial of service via invalid tidy objects
    - debian/patches/CVE-2012-0781.patch: track initialization in
      ext/tidy/tidy.c, added tests to ext/tidy/tests/004.phpt,
      ext/tidy/tests/bug54682.phpt.
    - CVE-2012-0781
  * SECURITY UPDATE: denial of service or possible directory traversal via
    invalid filename.
    - debian/patches/CVE-2012-1172.patch: ensure brackets get closed in
      main/rfc1867.c, add test to tests/basic/bug55500.phpt.
    - CVE-2012-1172
  * SECURITY UPDATE: password truncation via invalid byte
    - debian/patches/CVE-2012-2143.patch: improve logic in
      ext/standard/crypt_freesec.c, add test to
      ext/standard/tests/strings/crypt_chars.phpt.
    - CVE-2012-2143
  * SECURITY UPDATE: crypto() empty salt string issue
    - debian/patches/php_crypt_revamped.patch: Return fail string on
      invalid Blowfish salt rounds, fix regression when the salt is empty.
    - CVE-2012-2317
  * SECURITY UPDATE: improve php5-cgi query string parameter parsing
    - debian/patches/CVE-2012-233x.patch: improve parsing in
      sapi/cgi/cgi_main.c.
    - CVE-2012-2335
    - CVE-2012-2336
  * SECURITY UPDATE: phar extension heap overflow
    - debian/patches/CVE-2012-2386.patch: check for overflow in
      ext/phar/tar.c.
    - CVE-2012-2386
 -- Marc Deslauriers <email address hidden>   Tue, 12 Jun 2012 15:51:23 -0400

Upload details

Uploaded by:
Marc Deslauriers on 2012-06-19
Uploaded to:
Lucid
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
php
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
php5_5.3.2.orig.tar.gz 13.1 MiB a61f02b3b0a83c5a5b8b71a55c5760d1fb7290f1ec84eef1bdb8e8850a828f2f
php5_5.3.2-1ubuntu4.17.diff.gz 245.4 KiB 24c6dfb0a0c2bb95d96194a72f1308105520155d04b8db0692dfabe31ff9f8dd
php5_5.3.2-1ubuntu4.17.dsc 3.1 KiB aa514a5102c617418b0a284528b610d6c31a436f96afa46a103dae3525dd6d60

View changes file

Binary packages built by this source

libapache2-mod-php5: No summary available for libapache2-mod-php5 in ubuntu lucid.

No description available for libapache2-mod-php5 in ubuntu lucid.

libapache2-mod-php5filter: No summary available for libapache2-mod-php5filter in ubuntu lucid.

No description available for libapache2-mod-php5filter in ubuntu lucid.

php-pear: No summary available for php-pear in ubuntu lucid.

No description available for php-pear in ubuntu lucid.

php5: No summary available for php5 in ubuntu lucid.

No description available for php5 in ubuntu lucid.

php5-cgi: No summary available for php5-cgi in ubuntu lucid.

No description available for php5-cgi in ubuntu lucid.

php5-cli: No summary available for php5-cli in ubuntu lucid.

No description available for php5-cli in ubuntu lucid.

php5-common: No summary available for php5-common in ubuntu lucid.

No description available for php5-common in ubuntu lucid.

php5-curl: No summary available for php5-curl in ubuntu lucid.

No description available for php5-curl in ubuntu lucid.

php5-dbg: No summary available for php5-dbg in ubuntu lucid.

No description available for php5-dbg in ubuntu lucid.

php5-dev: No summary available for php5-dev in ubuntu lucid.

No description available for php5-dev in ubuntu lucid.

php5-enchant: No summary available for php5-enchant in ubuntu lucid.

No description available for php5-enchant in ubuntu lucid.

php5-gd: No summary available for php5-gd in ubuntu lucid.

No description available for php5-gd in ubuntu lucid.

php5-gmp: No summary available for php5-gmp in ubuntu lucid.

No description available for php5-gmp in ubuntu lucid.

php5-intl: No summary available for php5-intl in ubuntu lucid.

No description available for php5-intl in ubuntu lucid.

php5-ldap: No summary available for php5-ldap in ubuntu lucid.

No description available for php5-ldap in ubuntu lucid.

php5-mysql: No summary available for php5-mysql in ubuntu lucid.

No description available for php5-mysql in ubuntu lucid.

php5-odbc: No summary available for php5-odbc in ubuntu lucid.

No description available for php5-odbc in ubuntu lucid.

php5-pgsql: No summary available for php5-pgsql in ubuntu lucid.

No description available for php5-pgsql in ubuntu lucid.

php5-pspell: No summary available for php5-pspell in ubuntu lucid.

No description available for php5-pspell in ubuntu lucid.

php5-recode: No summary available for php5-recode in ubuntu lucid.

No description available for php5-recode in ubuntu lucid.

php5-snmp: No summary available for php5-snmp in ubuntu lucid.

No description available for php5-snmp in ubuntu lucid.

php5-sqlite: No summary available for php5-sqlite in ubuntu lucid.

No description available for php5-sqlite in ubuntu lucid.

php5-sybase: No summary available for php5-sybase in ubuntu lucid.

No description available for php5-sybase in ubuntu lucid.

php5-tidy: No summary available for php5-tidy in ubuntu lucid.

No description available for php5-tidy in ubuntu lucid.

php5-xmlrpc: No summary available for php5-xmlrpc in ubuntu lucid.

No description available for php5-xmlrpc in ubuntu lucid.

php5-xsl: No summary available for php5-xsl in ubuntu lucid.

No description available for php5-xsl in ubuntu lucid.