php-pear 1:1.10.1+submodules+notgz-6ubuntu0.1 source package in Ubuntu
Changelog
php-pear (1:1.10.1+submodules+notgz-6ubuntu0.1) xenial-security; urgency=medium * SECURITY UPDATE: unserialization vulnerability in Archive_Tar - debian/patches/CVE-2018-1000888.patch: don't allow filenames to start with phar:// in submodules/Archive_Tar/Archive/Tar.php. - CVE-2018-1000888 -- Marc Deslauriers <email address hidden> Fri, 11 Jan 2019 13:24:22 -0500
Upload details
- Uploaded by:
- Marc Deslauriers
- Uploaded to:
- Xenial
- Original maintainer:
- Ubuntu Developers
- Architectures:
- all
- Section:
- php
- Urgency:
- Medium Urgency
See full publishing history Publishing
Series | Published | Component | Section |
---|
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
php-pear_1.10.1+submodules+notgz.orig.tar.gz | 2.1 MiB | a9ec24292beb2a8caf1b42c0ed801d0105afc63c7dcc57449f12e54caecc815c |
php-pear_1.10.1+submodules+notgz-6ubuntu0.1.debian.tar.xz | 5.9 KiB | a6fd0b49e6d34f464ccae2febefea58634635b17d6043ddae375d3ef6fb5a6ac |
php-pear_1.10.1+submodules+notgz-6ubuntu0.1.dsc | 2.1 KiB | 3b9e6578772a0f27d87893beccec931d6b6c80805895ea5b89512ea53d054bbf |
Available diffs
Binary packages built by this source
- php-pear: PEAR Base System
The PEAR package contains:
* the PEAR installer, for creating, distributing
and installing packages
* the PEAR_Exception PHP error handling mechanism
* the PEAR_ErrorStack advanced error handling mechanism
* the PEAR_Error error handling mechanism
* the OS_Guess class for retrieving info about the OS
where PHP is running on
* the System class for quick handling of common operations
with files and directories
* the PEAR base class
Features in a nutshell:
* full support for channels
* pre-download dependency validation
* new package.xml 2.0 format allows tremendous flexibility while maintaining
BC
* support for optional dependency groups and limited support for
sub-packaging
* robust dependency support
* full dependency validation on uninstall
* remote install for hosts with only ftp access - no more problems with
restricted host installation
* full support for mirroring
* support for bundling several packages into a single tarball
* support for static dependencies on a url-based package
* support for custom file roles and installation tasks