php5 5.0.5-2ubuntu1.5 source package in Ubuntu

Changelog

php5 (5.0.5-2ubuntu1.5) breezy-security; urgency=low

  * SECURITY UPDATE: Multiple vulnerabilities.
  * Fix CVE number in 5.1.2-1ubuntu3.1 changelog: The curl open_basedir
    bypass is actually CVE-2006-4483, not -2563.
  * Add debian/patches/CVE-2006-4485.patch:
    - Fix buffer overread in stripos().
    - Ported from upstream CVS:
      http://cvs.php.net/viewvc.cgi/php-src/ext/standard/string.c?view=diff&r1=1.547&r2=1.548
  * Add debian/patches/CVE-2006-4486.patch:
    - Fix integer overflow and memory_limit bypass on 64 bit platforms.
    - Patch stolen from RedHat security update, not fixed upstream yet.
  * Add debian/patches/CVE-2006-4625.patch:
    - Fix open_basedir/safe_mode bypass with ini_restore().
    - Ported from upstream CVS:
      http://cvs.php.net/viewvc.cgi/ZendEngine2/zend_ini.c?r1=1.39.2.2&r2=1.39.2.3
  * Add debian/patches/CVE-2006-4812.patch:
    - Fix integer overflow in Zend's ecalloc().
    - Ported from upstream CVS:
      http://cvs.php.net/viewvc.cgi/ZendEngine2/zend_alloc.c?r1=1.161&r2=1.162
  * Note for CVE tracking: This version is not vulnerable to CVE-2006-0200.

 -- Martin Pitt <email address hidden>   Tue, 10 Oct 2006 13:29:05 +0000

Upload details

Uploaded by:
Martin Pitt
Uploaded to:
Breezy
Original maintainer:
Debian PHP Maintainers
Architectures:
any
Section:
web
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
php5_5.0.5.orig.tar.gz 5.8 MiB 9352f178a3ad5cf85820ee9b6e74de96b997ef55958c5f0315b6e8eb1369d552
php5_5.0.5-2ubuntu1.5.diff.gz 108.9 KiB 316945dd1673899e9ce878b4f411141c295e615cbb7b0331351f4f2c65c033c5
php5_5.0.5-2ubuntu1.5.dsc 1.7 KiB 0263496431fbdd030122c2eeaf75555f0fcd16819d448241c3f6d81cea5c73be

View changes file

Binary packages built by this source

libapache2-mod-php5: No summary available for libapache2-mod-php5 in ubuntu breezy.

No description available for libapache2-mod-php5 in ubuntu breezy.

php-pear: No summary available for php-pear in ubuntu breezy.

No description available for php-pear in ubuntu breezy.

php5: No summary available for php5 in ubuntu breezy.

No description available for php5 in ubuntu breezy.

php5-cgi: No summary available for php5-cgi in ubuntu breezy.

No description available for php5-cgi in ubuntu breezy.

php5-cli: No summary available for php5-cli in ubuntu breezy.

No description available for php5-cli in ubuntu breezy.

php5-common: No summary available for php5-common in ubuntu breezy.

No description available for php5-common in ubuntu breezy.

php5-curl: No summary available for php5-curl in ubuntu breezy.

No description available for php5-curl in ubuntu breezy.

php5-dev: No summary available for php5-dev in ubuntu breezy.

No description available for php5-dev in ubuntu breezy.

php5-gd: No summary available for php5-gd in ubuntu breezy.

No description available for php5-gd in ubuntu breezy.

php5-ldap: No summary available for php5-ldap in ubuntu breezy.

No description available for php5-ldap in ubuntu breezy.

php5-mhash: No summary available for php5-mhash in ubuntu breezy.

No description available for php5-mhash in ubuntu breezy.

php5-mysql: No summary available for php5-mysql in ubuntu breezy.

No description available for php5-mysql in ubuntu breezy.

php5-odbc: No summary available for php5-odbc in ubuntu breezy.

No description available for php5-odbc in ubuntu breezy.

php5-pgsql: No summary available for php5-pgsql in ubuntu breezy.

No description available for php5-pgsql in ubuntu breezy.

php5-recode: No summary available for php5-recode in ubuntu breezy.

No description available for php5-recode in ubuntu breezy.

php5-snmp: No summary available for php5-snmp in ubuntu breezy.

No description available for php5-snmp in ubuntu breezy.

php5-sqlite: No summary available for php5-sqlite in ubuntu breezy.

No description available for php5-sqlite in ubuntu breezy.

php5-sybase: No summary available for php5-sybase in ubuntu breezy.

No description available for php5-sybase in ubuntu breezy.

php5-xmlrpc: No summary available for php5-xmlrpc in ubuntu breezy.

No description available for php5-xmlrpc in ubuntu breezy.

php5-xsl: No summary available for php5-xsl in ubuntu breezy.

No description available for php5-xsl in ubuntu breezy.