~ubuntu-branches/ubuntu/dapper/php5/dapper-security

  • Committer: Bazaar Package Importer
  • Author(s): Martin Pitt
  • Date: 2006-11-02 10:16:28 UTC
  • Revision ID: james.westby@ubuntu.com-20061102101628-1zq0gb36qvy9xi3w
Tags: 5.1.2-1ubuntu3.4
* SECURITY UPDATE: Remote code execution.
* Add debian/patches/CVE-2006-5465.patch:
  - Fix buffer overflows in htmlentities() and htmlspecialchars().
  - Ported from upstream CVS:
    http://cvs.php.net/viewvc.cgi/php-src/ext/standard/html.c?r1=1.111.2.2.2.2&r2=1.111.2.2.2.3
* Add debian/patches/200-chdir_openbasedir_bypass.patch:
  - Fix open_basedir bypass in chdir().
  - Ported from upstream CVS:
    http://cvs.php.net/viewvc.cgi/php-src/ext/standard/dir.c?r1=1.147.2.3&r2=1.147.2.3.2.1
* Add debian/patches/201-tempnam_openbasedir_bypass.patch:
  - Fix open_basedir bypass in tempnam().
  - Ported from upstream CVS:
    http://cvs.php.net/viewvc.cgi/php-src/main/php_open_temporary_file.c?r1=1.34.2.1.2.1&r2=1.34.2.1.2.3
Filename Latest Rev Last Changed Committer Comment Size
..
config.m4 1 18 years ago Bazaar Package Importer Import upstream version 5.0.5 728 bytes Diff Download File
CREDITS 1 18 years ago Bazaar Package Importer Import upstream version 5.0.5 20 bytes Diff Download File
php_webjames.h 1.1.2 18 years ago Bazaar Package Importer Import upstream version 5.1.2 1.3 KB Diff Download File
README 1 18 years ago Bazaar Package Importer Import upstream version 5.0.5 559 bytes Diff Download File
webjames.c 1.1.2 18 years ago Bazaar Package Importer Import upstream version 5.1.2 9.3 KB Diff Download File