php5 5.0.5-2ubuntu1.1 source package in Ubuntu

Changelog

php5 (5.0.5-2ubuntu1.1) breezy-security; urgency=low


  * SECURITY UPDATE: multiple fixes backported from new upstream releases:
    - Resolves a local denial of service in the apache2 SAPI, which can
      be triggered by using session.save_path in .htaccess; CVE-2005-3319
    - Resolves an infinite loop in the exif_read_data function which can
      be triggered with a specially-crafted JPEG image; CVE-2005-3353
    - Resolves a vulnerability in the parse_str function whereby a remote
      attacker can fool PHP into turning on register_globals, thus making
      applications vulnerable to global variable injections; CVE-2005-3389
    - Resolves a vulnerability in the RFC1867 file upload feature where, if
      register_globals is enabled, a remote attacker can modify the GLOBALS
      array with a multipart/form-data POST request; see CVE-2005-3390
    - Resolves numerous safe_mode and open_basedir bypasses; CVE-2005-3391
    - Resolves INI settings leaks in the apache2 SAPI, leading to safe_mode
      and open_basedir bypasses between virtual hosts; CVE-2005-3392
    - Resolves a CRLF injection vulnerability in the mb_send_mail function,
      allowing injection of arbitrary mail headers; see CVE-2005-3883

 -- Adam Conrad <email address hidden>  Fri, 23 Dec 2005 16:37:46 +1000

Upload details

Uploaded by:
Ubuntu Archive Auto-Sync
Uploaded to:
Breezy
Original maintainer:
Debian PHP Maintainers
Architectures:
any
Section:
web
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
php5_5.0.5-2ubuntu1.1.dsc 1.7 KiB 71c549a11a939f82f6f6ecbccc601bd98538885ee3e7ffd7cb8dc19f6e0282b9
php5_5.0.5.orig.tar.gz 5.8 MiB 9352f178a3ad5cf85820ee9b6e74de96b997ef55958c5f0315b6e8eb1369d552
php5_5.0.5-2ubuntu1.1.diff.gz 98.7 KiB c405f6bbf6639b2ee9096d446033a8476fb54b66aee6916d098cee78a9fd8321

No changes file available.

Binary packages built by this source

libapache2-mod-php5: No summary available for libapache2-mod-php5 in ubuntu breezy.

No description available for libapache2-mod-php5 in ubuntu breezy.

php-pear: No summary available for php-pear in ubuntu breezy.

No description available for php-pear in ubuntu breezy.

php5: No summary available for php5 in ubuntu breezy.

No description available for php5 in ubuntu breezy.

php5-cgi: No summary available for php5-cgi in ubuntu breezy.

No description available for php5-cgi in ubuntu breezy.

php5-cli: No summary available for php5-cli in ubuntu breezy.

No description available for php5-cli in ubuntu breezy.

php5-common: No summary available for php5-common in ubuntu breezy.

No description available for php5-common in ubuntu breezy.

php5-curl: No summary available for php5-curl in ubuntu breezy.

No description available for php5-curl in ubuntu breezy.

php5-dev: No summary available for php5-dev in ubuntu breezy.

No description available for php5-dev in ubuntu breezy.

php5-gd: No summary available for php5-gd in ubuntu breezy.

No description available for php5-gd in ubuntu breezy.

php5-ldap: No summary available for php5-ldap in ubuntu breezy.

No description available for php5-ldap in ubuntu breezy.

php5-mhash: No summary available for php5-mhash in ubuntu breezy.

No description available for php5-mhash in ubuntu breezy.

php5-mysql: No summary available for php5-mysql in ubuntu breezy.

No description available for php5-mysql in ubuntu breezy.

php5-odbc: No summary available for php5-odbc in ubuntu breezy.

No description available for php5-odbc in ubuntu breezy.

php5-pgsql: No summary available for php5-pgsql in ubuntu breezy.

No description available for php5-pgsql in ubuntu breezy.

php5-recode: No summary available for php5-recode in ubuntu breezy.

No description available for php5-recode in ubuntu breezy.

php5-snmp: No summary available for php5-snmp in ubuntu breezy.

No description available for php5-snmp in ubuntu breezy.

php5-sqlite: No summary available for php5-sqlite in ubuntu breezy.

No description available for php5-sqlite in ubuntu breezy.

php5-sybase: No summary available for php5-sybase in ubuntu breezy.

No description available for php5-sybase in ubuntu breezy.

php5-xmlrpc: No summary available for php5-xmlrpc in ubuntu breezy.

No description available for php5-xmlrpc in ubuntu breezy.

php5-xsl: No summary available for php5-xsl in ubuntu breezy.

No description available for php5-xsl in ubuntu breezy.