php5 5.3.2-1ubuntu4.10 source package in Ubuntu

Changelog

php5 (5.3.2-1ubuntu4.10) lucid-security; urgency=low

  [ Angel Abad ]
  * SECURITY UPDATE: File path injection vulnerability in RFC1867 File
    upload filename (LP: #813115)
    - debian/patches/php5-CVE-2011-2202.patch:
    - CVE-2011-2202
  * SECURITY UPDATE: Fixed stack buffer overflow in socket_connect()
    (LP: #813110)
    - debian/patches/php5-CVE-2011-1938.patch:
    - CVE-2011-1938

  [ Steve Beattie ]
  * SECURITY UPDATE: DoS in zip handling due to addGlob() crashing
    on invalid flags
    - debian/patches/php5-CVE-2011-1657.patch: check for valid flags
    - CVE-2011-1657
  * SECURITY UPDATE: crypt_blowfish doesn't properly handle 8-bit
    (non-ascii) passwords leading to a smaller collision space
    - debian/patches/php5-CVE-2011-2483.patch: update crypt_blowfish
      to 1.2 to correct handling of passwords containing 8-bit
      (non-ascii) characters.
      CVE-2011-2483
  * SECURITY UPDATE: DoS due to failure to check for memory allocation errors
    - debian/patches/php5-CVE-2011-3182.patch: check the return values
      of the malloc, calloc, and realloc functions
    - CVE-2011-3182
  * SECURITY UPDATE: DoS in errorlog() when passed NULL
    - debian/patches/php5-CVE-2011-3267.patch: fix NULL pointer crash in
      errorlog()
    - CVE-2011-3267
  * SECURITY UPDATE: information leak via handler interrupt (LP: #852871)
    - debian/patches/php5-CVE-2010-1914.patch: grab references before
      calling zendi_convert_to_long()
    - CVE-2010-1914
 -- Steve Beattie <email address hidden>   Fri, 14 Oct 2011 14:24:59 -0700

Upload details

Uploaded by:
Steve Beattie
Uploaded to:
Lucid
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
php
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
php5_5.3.2.orig.tar.gz 13.1 MiB a61f02b3b0a83c5a5b8b71a55c5760d1fb7290f1ec84eef1bdb8e8850a828f2f
php5_5.3.2-1ubuntu4.10.diff.gz 232.8 KiB f943274ceaa56a25415dde581725b3801a80757fb9d4f8a5a3ce9a4847c5e443
php5_5.3.2-1ubuntu4.10.dsc 3.1 KiB 139a82111930dfcab8970c7701211dda534b2f531b6653aa7e7a448669f89e46

View changes file

Binary packages built by this source

libapache2-mod-php5: No summary available for libapache2-mod-php5 in ubuntu lucid.

No description available for libapache2-mod-php5 in ubuntu lucid.

libapache2-mod-php5filter: No summary available for libapache2-mod-php5filter in ubuntu lucid.

No description available for libapache2-mod-php5filter in ubuntu lucid.

php-pear: No summary available for php-pear in ubuntu lucid.

No description available for php-pear in ubuntu lucid.

php5: No summary available for php5 in ubuntu lucid.

No description available for php5 in ubuntu lucid.

php5-cgi: No summary available for php5-cgi in ubuntu lucid.

No description available for php5-cgi in ubuntu lucid.

php5-cli: No summary available for php5-cli in ubuntu lucid.

No description available for php5-cli in ubuntu lucid.

php5-common: No summary available for php5-common in ubuntu lucid.

No description available for php5-common in ubuntu lucid.

php5-curl: No summary available for php5-curl in ubuntu lucid.

No description available for php5-curl in ubuntu lucid.

php5-dbg: No summary available for php5-dbg in ubuntu lucid.

No description available for php5-dbg in ubuntu lucid.

php5-dev: No summary available for php5-dev in ubuntu lucid.

No description available for php5-dev in ubuntu lucid.

php5-enchant: No summary available for php5-enchant in ubuntu lucid.

No description available for php5-enchant in ubuntu lucid.

php5-gd: No summary available for php5-gd in ubuntu lucid.

No description available for php5-gd in ubuntu lucid.

php5-gmp: No summary available for php5-gmp in ubuntu lucid.

No description available for php5-gmp in ubuntu lucid.

php5-intl: No summary available for php5-intl in ubuntu lucid.

No description available for php5-intl in ubuntu lucid.

php5-ldap: No summary available for php5-ldap in ubuntu lucid.

No description available for php5-ldap in ubuntu lucid.

php5-mysql: No summary available for php5-mysql in ubuntu lucid.

No description available for php5-mysql in ubuntu lucid.

php5-odbc: No summary available for php5-odbc in ubuntu lucid.

No description available for php5-odbc in ubuntu lucid.

php5-pgsql: No summary available for php5-pgsql in ubuntu lucid.

No description available for php5-pgsql in ubuntu lucid.

php5-pspell: No summary available for php5-pspell in ubuntu lucid.

No description available for php5-pspell in ubuntu lucid.

php5-recode: No summary available for php5-recode in ubuntu lucid.

No description available for php5-recode in ubuntu lucid.

php5-snmp: No summary available for php5-snmp in ubuntu lucid.

No description available for php5-snmp in ubuntu lucid.

php5-sqlite: No summary available for php5-sqlite in ubuntu lucid.

No description available for php5-sqlite in ubuntu lucid.

php5-sybase: No summary available for php5-sybase in ubuntu lucid.

No description available for php5-sybase in ubuntu lucid.

php5-tidy: No summary available for php5-tidy in ubuntu lucid.

No description available for php5-tidy in ubuntu lucid.

php5-xmlrpc: No summary available for php5-xmlrpc in ubuntu lucid.

No description available for php5-xmlrpc in ubuntu lucid.

php5-xsl: No summary available for php5-xsl in ubuntu lucid.

No description available for php5-xsl in ubuntu lucid.