-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Fri, 18 Mar 2011 18:34:11 -0600 Source: php5 Binary: php5 php5-common libapache2-mod-php5 libapache2-mod-php5filter php5-cgi php5-cli php5-dev php5-dbg php-pear php5-curl php5-gd php5-gmp php5-imap php5-interbase php5-ldap php5-mcrypt php5-mhash php5-mysql php5-odbc php5-pgsql php5-pspell php5-recode php5-snmp php5-sqlite php5-sybase php5-tidy php5-xmlrpc php5-xsl Architecture: mips Version: 5.2.6.dfsg.1-1+lenny10 Distribution: lenny-security Urgency: high Maintainer: Debian Build Daemon Changed-By: Raphael Geissert Description: libapache2-mod-php5 - server-side, HTML-embedded scripting language (Apache 2 module) libapache2-mod-php5filter - server-side, HTML-embedded scripting language (apache 2 filter mo php-pear - PEAR - PHP Extension and Application Repository php5 - server-side, HTML-embedded scripting language (metapackage) php5-cgi - server-side, HTML-embedded scripting language (CGI binary) php5-cli - command-line interpreter for the php5 scripting language php5-common - Common files for packages built from the php5 source php5-curl - CURL module for php5 php5-dbg - Debug symbols for PHP5 php5-dev - Files for PHP5 module development php5-gd - GD module for php5 php5-gmp - GMP module for php5 php5-imap - IMAP module for php5 php5-interbase - interbase/firebird module for php5 php5-ldap - LDAP module for php5 php5-mcrypt - MCrypt module for php5 php5-mhash - MHASH module for php5 php5-mysql - MySQL module for php5 php5-odbc - ODBC module for php5 php5-pgsql - PostgreSQL module for php5 php5-pspell - pspell module for php5 php5-recode - recode module for php5 php5-snmp - SNMP module for php5 php5-sqlite - SQLite module for php5 php5-sybase - Sybase / MS SQL Server module for php5 php5-tidy - tidy module for php5 php5-xmlrpc - XML-RPC module for php5 php5-xsl - XSL module for php5 Changes: php5 (5.2.6.dfsg.1-1+lenny10) lenny-security; urgency=high . [ Ondřej Surý ] * Include upstream's fix for CVE-2010-1128: Weak seed for the Linear Congruential Generator (LCG) * Fix CVE-2010-3709: NULL pointer dereference in ZipArchive::getArchiveComment * Fix CVE-2010-3710: stack consumption when using the FILTER_VALIDATE_EMAIL filter * Fix CVE-2010-3870: incorrect handling of ill-formed subsequences in UTF-8 data * Fix CVE-2010-4150: Double free in imap_do_open * Fix a NULL pointer dereference in the zip extract method . [ Raphael Geissert ] * Include a test for CVE-2010-4645 * Fix CVE-2011-0441: arbitrary files removal via cronjob (Closes #618489) Checksums-Sha1: cf552771605a77d345453082ba46c09116595ed2 370138 php5-common_5.2.6.dfsg.1-1+lenny10_mips.deb 3adc766ef867c16fd78881dbaf721c761bc256c8 2521844 libapache2-mod-php5_5.2.6.dfsg.1-1+lenny10_mips.deb cdbb7a39d9d3452f06632b09675f9e72d0c303c5 2520270 libapache2-mod-php5filter_5.2.6.dfsg.1-1+lenny10_mips.deb 0d9cc191ac3389e736dd673c82fed0bd354ecdef 4958592 php5-cgi_5.2.6.dfsg.1-1+lenny10_mips.deb f91015266cb2fd61f8e37767dca2a74b7287a3dd 2494970 php5-cli_5.2.6.dfsg.1-1+lenny10_mips.deb 3202fae2a1d94e40e0ba3c78ff11f57ccbea0b87 365278 php5-dev_5.2.6.dfsg.1-1+lenny10_mips.deb dd6e53092e9360c8716e81daaf541ed6897c719f 9450900 php5-dbg_5.2.6.dfsg.1-1+lenny10_mips.deb 15b3b6cc0a6e42de317d0f6a2ab0e08b4569090a 23204 php5-curl_5.2.6.dfsg.1-1+lenny10_mips.deb e52102a00422372ef1ea91f35f39abd001700896 32434 php5-gd_5.2.6.dfsg.1-1+lenny10_mips.deb 18017963847692f173ccf8fe7626bed0e1027ac1 13310 php5-gmp_5.2.6.dfsg.1-1+lenny10_mips.deb 56d2a492c2664171a1fbe22380d0585628363956 32354 php5-imap_5.2.6.dfsg.1-1+lenny10_mips.deb 870f4e4f810a27aa88da38ec5e6f09a29fdb2b29 18436 php5-ldap_5.2.6.dfsg.1-1+lenny10_mips.deb 517f8b173695797c238392c6b28fd1aa3c1b67d0 12378 php5-mcrypt_5.2.6.dfsg.1-1+lenny10_mips.deb 97a50774e143ddd2cb20acab629606a584875a80 5310 php5-mhash_5.2.6.dfsg.1-1+lenny10_mips.deb 6ef92f1badef47dd550260be62f20c8cf3b15f32 63672 php5-mysql_5.2.6.dfsg.1-1+lenny10_mips.deb 77587ecdb306817ccab1baaddf9944ddd0165617 33870 php5-odbc_5.2.6.dfsg.1-1+lenny10_mips.deb 00f94c27d8c00a1901e4b913535b5f5721c4929d 51174 php5-pgsql_5.2.6.dfsg.1-1+lenny10_mips.deb 99c0a5539206be04b85bd77b72a0b88754e58ddb 8292 php5-pspell_5.2.6.dfsg.1-1+lenny10_mips.deb 724437873272cd97ff66a70f37a546d007b857f9 5006 php5-recode_5.2.6.dfsg.1-1+lenny10_mips.deb e63a3d6e6a3e54d8d017f61dbef9b6772ae1fe13 11520 php5-snmp_5.2.6.dfsg.1-1+lenny10_mips.deb 31456d9cad401dbebbe4180eb7460436ce72ccfa 35322 php5-sqlite_5.2.6.dfsg.1-1+lenny10_mips.deb 19b0193abf77f7772085670bc94e080d5d543b31 25314 php5-sybase_5.2.6.dfsg.1-1+lenny10_mips.deb eac6ef077a5375178948498e1c3f1a1bc81c1c2f 16040 php5-tidy_5.2.6.dfsg.1-1+lenny10_mips.deb 2ebfb566ec0d9630ec03b5a07d979028f423b404 35824 php5-xmlrpc_5.2.6.dfsg.1-1+lenny10_mips.deb 5372415cd4c3cb7a2bc9c259ef77136d893be988 12946 php5-xsl_5.2.6.dfsg.1-1+lenny10_mips.deb Checksums-Sha256: ed8151ecfe77a1f683e84bb156ad6eb5f93acec7ef87ea5f1a7eccdb5129f43f 370138 php5-common_5.2.6.dfsg.1-1+lenny10_mips.deb 231e06f5c7758076184e080d8e12fcdaeacb9d98bf8ae68971e65a13fe11a816 2521844 libapache2-mod-php5_5.2.6.dfsg.1-1+lenny10_mips.deb b9c7f4e19335b6a869826490ef97e10e3296079a5adfe863187d69fbf7484bb7 2520270 libapache2-mod-php5filter_5.2.6.dfsg.1-1+lenny10_mips.deb 97d6699b05644c09992f8a37bca3455fd15fd79798deb5e885c1e5e525c6a871 4958592 php5-cgi_5.2.6.dfsg.1-1+lenny10_mips.deb aa8c263a41036a420ef633ad6143322ba8993a4a49b34d60200384d735ec2bae 2494970 php5-cli_5.2.6.dfsg.1-1+lenny10_mips.deb 4c282cc1d6cc712102580e779216866348af812c2d126a631debd3c3cc199c54 365278 php5-dev_5.2.6.dfsg.1-1+lenny10_mips.deb 67d18dbda60402aaa2d1653f90320772b498e52321d48fca70c6ed90d8273fc6 9450900 php5-dbg_5.2.6.dfsg.1-1+lenny10_mips.deb 4add458fd07fee2f0b2f5d273c39ee364fc4ad652124d5462d801297f4aca054 23204 php5-curl_5.2.6.dfsg.1-1+lenny10_mips.deb 9276e392c1cf1227ff3b308d18fe81db8860af7a31a3e2ef68c9b6fbc7397a2b 32434 php5-gd_5.2.6.dfsg.1-1+lenny10_mips.deb f46895a6bb73c32327f36833de8b644a993c8d83288bdafb5cc4ee28b454e3c8 13310 php5-gmp_5.2.6.dfsg.1-1+lenny10_mips.deb b2162c1cecc6168f7111cd95fee4135728f82130601ff52d4ebf1d0ae4b93659 32354 php5-imap_5.2.6.dfsg.1-1+lenny10_mips.deb d5de402123f4f5865a13398c26991ef1e0f98d4ddb20aeb8991fd898468934a6 18436 php5-ldap_5.2.6.dfsg.1-1+lenny10_mips.deb 2021baf697d6a2cd2bd08bd925e7d311f636bb6a19c9b3bbd1b5ce347c4d83a5 12378 php5-mcrypt_5.2.6.dfsg.1-1+lenny10_mips.deb 09c190e529f55d38f74f34c09a23bceac60f74b7a1419f098e9875b48b36f5a3 5310 php5-mhash_5.2.6.dfsg.1-1+lenny10_mips.deb f143407ad8793c414c8b83860e0a140a2bb48af5dbd43fe4f606626fa4cfb1ad 63672 php5-mysql_5.2.6.dfsg.1-1+lenny10_mips.deb 9f474cf768e8188f1121a3e2c33db76f1c6f11b93002749f2e65ed83250ad6a5 33870 php5-odbc_5.2.6.dfsg.1-1+lenny10_mips.deb 5041e65678ca28d99bd2080919e4b0e12aab5a8330d4e0a433e713f6a5850254 51174 php5-pgsql_5.2.6.dfsg.1-1+lenny10_mips.deb 759f98d270d8092aa8ee28c41b966a13eaab2a855bcd4b513a640855c9390ed2 8292 php5-pspell_5.2.6.dfsg.1-1+lenny10_mips.deb 37e683fbb3d448c1b67912ff963bea27c0a220a3d509cf049609ac1cc6d3a805 5006 php5-recode_5.2.6.dfsg.1-1+lenny10_mips.deb 117e90940177a5d6f8a5dc493499d971c7c14375e1e7637c27f804046d60d574 11520 php5-snmp_5.2.6.dfsg.1-1+lenny10_mips.deb 86a9ca496ef6a9022aaba129c9d4f1b57ed5349ba34a6d7125d631b9b83c455f 35322 php5-sqlite_5.2.6.dfsg.1-1+lenny10_mips.deb aa6099ca6f13f0b05c0414998e47baf0a6bb8a7ab86a6de0ae850ee15ed45b5d 25314 php5-sybase_5.2.6.dfsg.1-1+lenny10_mips.deb 190413d6d06f3d3a108839df8e598e6f02a6ed1d67564b58f9150e3d7a2af072 16040 php5-tidy_5.2.6.dfsg.1-1+lenny10_mips.deb 1fbc0b0b3e0854c4d0b9b5faadc835ad62855009a999b6a2d68e492556726570 35824 php5-xmlrpc_5.2.6.dfsg.1-1+lenny10_mips.deb c356d22e88f8bed1322cd8365789a155c4054ba703914711cb029b8cfc8ba360 12946 php5-xsl_5.2.6.dfsg.1-1+lenny10_mips.deb Files: 403a2fae97f26dfb0196b39ddb2390ff 370138 web optional php5-common_5.2.6.dfsg.1-1+lenny10_mips.deb 8ed02e34243ec59d3937cfd23029a955 2521844 web optional libapache2-mod-php5_5.2.6.dfsg.1-1+lenny10_mips.deb 83d626b24ffd08eaf41aa05075d8cbc7 2520270 web optional libapache2-mod-php5filter_5.2.6.dfsg.1-1+lenny10_mips.deb be6ec56c814f50af9e8130b272be204f 4958592 web optional php5-cgi_5.2.6.dfsg.1-1+lenny10_mips.deb 90abeec84174e4e80fd74c9dbb0e86f1 2494970 web optional php5-cli_5.2.6.dfsg.1-1+lenny10_mips.deb 5d4c644bb1152c0f47251f263852e494 365278 devel optional php5-dev_5.2.6.dfsg.1-1+lenny10_mips.deb e6966f46c488b285a43a0a454f693a87 9450900 devel extra php5-dbg_5.2.6.dfsg.1-1+lenny10_mips.deb dd1ac4512715bc5fd3dd8cec83d201ca 23204 web optional php5-curl_5.2.6.dfsg.1-1+lenny10_mips.deb adc31d8d30ce1cf81a8bdd4d410837d8 32434 web optional php5-gd_5.2.6.dfsg.1-1+lenny10_mips.deb 39a2ffa5e661d4217e8930b4239397b2 13310 web optional php5-gmp_5.2.6.dfsg.1-1+lenny10_mips.deb daf82c54371e8a2879b7b645fc61c6b9 32354 web optional php5-imap_5.2.6.dfsg.1-1+lenny10_mips.deb 4433b7721f3624f27ee3401691d1bb8c 18436 web optional php5-ldap_5.2.6.dfsg.1-1+lenny10_mips.deb f6908dbec625b290910afe4ecccfddbf 12378 web optional php5-mcrypt_5.2.6.dfsg.1-1+lenny10_mips.deb 67ff18490118a59753834620317fbf1f 5310 web optional php5-mhash_5.2.6.dfsg.1-1+lenny10_mips.deb 4878e0c70b74fbf36445f379a58bdee2 63672 web optional php5-mysql_5.2.6.dfsg.1-1+lenny10_mips.deb 835062fd88a24acac08c9f7064314378 33870 web optional php5-odbc_5.2.6.dfsg.1-1+lenny10_mips.deb 721cf55eeecc71d1ca11804e18c4757b 51174 web optional php5-pgsql_5.2.6.dfsg.1-1+lenny10_mips.deb a7b4438d575e730eb529e8f1f66f273f 8292 web optional php5-pspell_5.2.6.dfsg.1-1+lenny10_mips.deb 36157976cffe77c9bb1f5559017b0900 5006 web optional php5-recode_5.2.6.dfsg.1-1+lenny10_mips.deb fb3d4c1d416d3bfcb13417b7865b86aa 11520 web optional php5-snmp_5.2.6.dfsg.1-1+lenny10_mips.deb 2f5cf93ac243d1cecd15770eae115c40 35322 web optional php5-sqlite_5.2.6.dfsg.1-1+lenny10_mips.deb f2cfd00edb202cad3874909de1c18c72 25314 web optional php5-sybase_5.2.6.dfsg.1-1+lenny10_mips.deb a3970468d658a96efbf0579271fedb0a 16040 web optional php5-tidy_5.2.6.dfsg.1-1+lenny10_mips.deb 4ae399cd586dfd3db15c1c6e535bbf13 35824 web optional php5-xmlrpc_5.2.6.dfsg.1-1+lenny10_mips.deb b6cd0b33d8ee064727ecdd56c4e194e6 12946 web optional php5-xsl_5.2.6.dfsg.1-1+lenny10_mips.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) iEYEARECAAYFAk2E6pQACgkQYy49rUbZzlp68wCfVczLmhOQvuKjHs8uA6LZfy/N TGsAn0boLez2omLoQfcjxzTHR7McMUiq =ls3i -----END PGP SIGNATURE-----