php4 4:4.4.0-3ubuntu2 source package in Ubuntu

Changelog

php4 (4:4.4.0-3ubuntu2) breezy-security; urgency=low

  * SECURITY UPDATE: multiple fixes backported from 5.1.2 and CVS:
    - Fix multiple HTTP response splitting vulnerabilities in sessions and
      the header() function, due to lack of input validation; CVE-2006-0207
      + Add safety checks in the header() function to make sure that we
        don't get newlines injected by (mis)use of user input in headers.
      + Add a check for invalid characters in session names, so that we
        aren't subject to HTTP response splitting vulnerabilities in
        the Set-Cookie header we send back out as a result of user input.
    - Filter HTML error reporting, preventing cross-site scripting attacks
      when both display_errors and html_errors are enabled; CVE-2006-0208

 -- Adam Conrad <email address hidden>   Wed,  8 Mar 2006 17:50:13 +1100

Upload details

Uploaded by:
Adam Conrad
Uploaded to:
Breezy
Original maintainer:
Debian PHP Maintainers
Architectures:
any
Section:
web
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
php4_4.4.0.orig.tar.gz 4.7 MiB 5f52a15b5f1dd53283e6ad6234d3f61a49f413192a2b3a51c61669634c99cc76
php4_4.4.0-3ubuntu2.diff.gz 101.6 KiB b5b1f854970437252762625d88f5c8ff0243496619370af24c7ac6b05b40e2b2
php4_4.4.0-3ubuntu2.dsc 1.7 KiB 2cdabdd0a04679dd0bf9257c8dc8f655073744b7f41d7acb5b20c6fd43c835ba

View changes file

Binary packages built by this source

libapache-mod-php4: No summary available for libapache-mod-php4 in ubuntu breezy.

No description available for libapache-mod-php4 in ubuntu breezy.

libapache2-mod-php4: No summary available for libapache2-mod-php4 in ubuntu breezy.

No description available for libapache2-mod-php4 in ubuntu breezy.

php4: No summary available for php4 in ubuntu breezy.

No description available for php4 in ubuntu breezy.

php4-cgi: No summary available for php4-cgi in ubuntu breezy.

No description available for php4-cgi in ubuntu breezy.

php4-cli: No summary available for php4-cli in ubuntu breezy.

No description available for php4-cli in ubuntu breezy.

php4-common: No summary available for php4-common in ubuntu breezy.

No description available for php4-common in ubuntu breezy.

php4-curl: No summary available for php4-curl in ubuntu breezy.

No description available for php4-curl in ubuntu breezy.

php4-dev: No summary available for php4-dev in ubuntu breezy.

No description available for php4-dev in ubuntu breezy.

php4-domxml: No summary available for php4-domxml in ubuntu breezy.

No description available for php4-domxml in ubuntu breezy.

php4-gd: No summary available for php4-gd in ubuntu breezy.

No description available for php4-gd in ubuntu breezy.

php4-ldap: No summary available for php4-ldap in ubuntu breezy.

No description available for php4-ldap in ubuntu breezy.

php4-mcal: No summary available for php4-mcal in ubuntu breezy.

No description available for php4-mcal in ubuntu breezy.

php4-mhash: No summary available for php4-mhash in ubuntu breezy.

No description available for php4-mhash in ubuntu breezy.

php4-mysql: No summary available for php4-mysql in ubuntu breezy.

No description available for php4-mysql in ubuntu breezy.

php4-odbc: No summary available for php4-odbc in ubuntu breezy.

No description available for php4-odbc in ubuntu breezy.

php4-pear: No summary available for php4-pear in ubuntu breezy.

No description available for php4-pear in ubuntu breezy.

php4-pgsql: No summary available for php4-pgsql in ubuntu breezy.

No description available for php4-pgsql in ubuntu breezy.

php4-recode: No summary available for php4-recode in ubuntu breezy.

No description available for php4-recode in ubuntu breezy.

php4-snmp: No summary available for php4-snmp in ubuntu breezy.

No description available for php4-snmp in ubuntu breezy.

php4-sybase: No summary available for php4-sybase in ubuntu breezy.

No description available for php4-sybase in ubuntu breezy.

php4-xslt: No summary available for php4-xslt in ubuntu breezy.

No description available for php4-xslt in ubuntu breezy.