php5 5.6.4+dfsg-4ubuntu2 source package in Ubuntu

Changelog

php5 (5.6.4+dfsg-4ubuntu2) vivid; urgency=medium

  * SECURITY UPDATE: out of bounds read via invalid php file
    - debian/patches/CVE-2014-9427.patch: fix bounds in
      sapi/cgi/cgi_main.c.
    - CVE-2014-9427
  * SECURITY UPDATE: out of bounds read in fileinfo
    - debian/patches/CVE-2014-9652.patch: properly check length in
      ext/fileinfo/libmagic/softmagic.c.
    - CVE-2014-9652
  * SECURITY UPDATE: arbitrary code execution via improper handling of
    duplicate keys in unserializer, additional fix
    - debian/patches/CVE-2015-0231.patch: fix use after free in
      ext/standard/var_unserializer.*, added test to
      ext/standard/tests/strings/bug68710.phpt.
    - CVE-2015-0231
  * SECURITY UPDATE: arbitrary code execution or denial of service via
    crafted EXIF data
    - debian/patches/CVE-2015-0232.patch: fix uninitialized pointer free in
      ext/exif/exif.c.
    - CVE-2015-0232
  * SECURITY UPDATE: use after free in opcache component
    - debian/patches/CVE-2015-1351.patch: fix use after free in
      ext/opcache/zend_shared_alloc.c.
    - CVE-2015-1351
  * SECURITY UPDATE: null pointer dereference in pgsql
    - debian/patches/CVE-2015-1352.patch: properly set valid token in
      ext/pgsql/pgsql.c.
    - CVE-2015-1352
  * debian/patches/remove_readelf.patch: remove readelf.c from fileinfo as
    it isn't used, and is a source of confusion when doing security
    updates.
 -- Marc Deslauriers <email address hidden>   Tue, 17 Feb 2015 15:47:51 -0500

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Vivid
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
php
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
php5_5.6.4+dfsg.orig.tar.xz 10.5 MiB 0547406ece782fba70b68529329ceb2182dc1fd30ea769519efabd4355654329
php5_5.6.4+dfsg-4ubuntu2.debian.tar.xz 135.8 KiB 76f25ecab4758e87b3043146af4478915f2724824f89305bb78fd0910b570e59
php5_5.6.4+dfsg-4ubuntu2.dsc 4.7 KiB bd6fc550a7aea0a321a2f001f5b0c6f2f80faa6f21f38014791c09dfc5098eca

View changes file

Binary packages built by this source

libapache2-mod-php5: No summary available for libapache2-mod-php5 in ubuntu vivid.

No description available for libapache2-mod-php5 in ubuntu vivid.

libapache2-mod-php5filter: No summary available for libapache2-mod-php5filter in ubuntu vivid.

No description available for libapache2-mod-php5filter in ubuntu vivid.

libphp5-embed: No summary available for libphp5-embed in ubuntu vivid.

No description available for libphp5-embed in ubuntu vivid.

php-pear: No summary available for php-pear in ubuntu vivid.

No description available for php-pear in ubuntu vivid.

php5: No summary available for php5 in ubuntu vivid.

No description available for php5 in ubuntu vivid.

php5-cgi: No summary available for php5-cgi in ubuntu vivid.

No description available for php5-cgi in ubuntu vivid.

php5-cli: No summary available for php5-cli in ubuntu vivid.

No description available for php5-cli in ubuntu vivid.

php5-common: No summary available for php5-common in ubuntu vivid.

No description available for php5-common in ubuntu vivid.

php5-curl: No summary available for php5-curl in ubuntu vivid.

No description available for php5-curl in ubuntu vivid.

php5-dbg: No summary available for php5-dbg in ubuntu vivid.

No description available for php5-dbg in ubuntu vivid.

php5-dev: No summary available for php5-dev in ubuntu vivid.

No description available for php5-dev in ubuntu vivid.

php5-enchant: No summary available for php5-enchant in ubuntu vivid.

No description available for php5-enchant in ubuntu vivid.

php5-fpm: No summary available for php5-fpm in ubuntu vivid.

No description available for php5-fpm in ubuntu vivid.

php5-gd: No summary available for php5-gd in ubuntu vivid.

No description available for php5-gd in ubuntu vivid.

php5-gmp: No summary available for php5-gmp in ubuntu vivid.

No description available for php5-gmp in ubuntu vivid.

php5-intl: No summary available for php5-intl in ubuntu vivid.

No description available for php5-intl in ubuntu vivid.

php5-ldap: No summary available for php5-ldap in ubuntu vivid.

No description available for php5-ldap in ubuntu vivid.

php5-mysql: No summary available for php5-mysql in ubuntu vivid.

No description available for php5-mysql in ubuntu vivid.

php5-mysqlnd: No summary available for php5-mysqlnd in ubuntu vivid.

No description available for php5-mysqlnd in ubuntu vivid.

php5-odbc: No summary available for php5-odbc in ubuntu vivid.

No description available for php5-odbc in ubuntu vivid.

php5-pgsql: No summary available for php5-pgsql in ubuntu vivid.

No description available for php5-pgsql in ubuntu vivid.

php5-phpdbg: No summary available for php5-phpdbg in ubuntu vivid.

No description available for php5-phpdbg in ubuntu vivid.

php5-pspell: No summary available for php5-pspell in ubuntu vivid.

No description available for php5-pspell in ubuntu vivid.

php5-readline: No summary available for php5-readline in ubuntu vivid.

No description available for php5-readline in ubuntu vivid.

php5-recode: No summary available for php5-recode in ubuntu vivid.

No description available for php5-recode in ubuntu vivid.

php5-snmp: No summary available for php5-snmp in ubuntu vivid.

No description available for php5-snmp in ubuntu vivid.

php5-sqlite: No summary available for php5-sqlite in ubuntu vivid.

No description available for php5-sqlite in ubuntu vivid.

php5-sybase: No summary available for php5-sybase in ubuntu vivid.

No description available for php5-sybase in ubuntu vivid.

php5-tidy: No summary available for php5-tidy in ubuntu vivid.

No description available for php5-tidy in ubuntu vivid.

php5-xmlrpc: No summary available for php5-xmlrpc in ubuntu vivid.

No description available for php5-xmlrpc in ubuntu vivid.

php5-xsl: No summary available for php5-xsl in ubuntu vivid.

No description available for php5-xsl in ubuntu vivid.