-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Thu, 3 Jan 2008 23:39:51 +0100 Source: php5 Binary: php5-gd php5-ldap php5 php5-xmlrpc php5-pspell libapache2-mod-php5 php5-xsl php5-cgi php-pear php5-tidy php5-pgsql php5-cli php5-recode php5-mhash php5-sybase php5-curl php5-odbc php5-mcrypt php5-mysql php5-common php5-imap php5-snmp php5-dev php5-sqlite libapache-mod-php5 php5-interbase Architecture: source i386 all Version: 5.2.0-8+etch9~bpo31+1 Distribution: sarge-backports Urgency: high Maintainer: Debian PHP Maintainers Changed-By: Jan Wagner Description: libapache-mod-php5 - server-side, HTML-embedded scripting language (apache 1.3 module) libapache2-mod-php5 - server-side, HTML-embedded scripting language (apache 2 module) php-pear - PEAR - PHP Extension and Application Repository php5 - server-side, HTML-embedded scripting language (meta-package) php5-cgi - server-side, HTML-embedded scripting language (CGI binary) php5-cli - command-line interpreter for the php5 scripting language php5-common - Common files for packages built from the php5 source php5-curl - CURL module for php5 php5-dev - Files for PHP5 module development php5-gd - GD module for php5 php5-imap - IMAP module for php5 php5-interbase - interbase/firebird module for php5 php5-ldap - LDAP module for php5 php5-mcrypt - MCrypt module for php5 php5-mhash - MHASH module for php5 php5-mysql - MySQL module for php5 php5-odbc - ODBC module for php5 php5-pgsql - PostgreSQL module for php5 php5-pspell - pspell module for php5 php5-recode - recode module for php5 php5-snmp - SNMP module for php5 php5-sqlite - SQLite module for php5 php5-sybase - Sybase / MS SQL Server module for php5 php5-tidy - tidy module for php5 php5-xmlrpc - XML-RPC module for php5 php5-xsl - XSL module for php5 Changes: php5 (5.2.0-8+etch9~bpo31+1) sarge-backports; urgency=low . * rebuild for sarge * removed libcurl3-openssl-dev and libpq-dev from build-dependencies. * changed depencies for libapache2-mod-php5 to apache2-common * changed build depency from libsnmp9-dev to libsnmp5-dev * removed build depency for libmysqlclient15-dev and linked against libmysqlclient12-dev * changed build depency from libapr1-dev to libapr0-dev * changed build depency from libdb4.4-dev to libdb4.2-dev * added build depency for libsqlite3-dev * set build depency version for firebird2-dev to (>=1.5.3.4870-1) * disabled LFSs, caused segfaults on sarge: - modified rules * disabled mysqli support * leave a hint in README.Debian of php5-common about mysql . php5 (5.2.0-8+etch9) stable-security; urgency=high . * Fix previous patch / compilation on 64 bit archs * Add more patches by Sean from SVN: - CVE-2007-5898: Fix insecure handling of htmlentities() and htmlspecialchars() - CVE-2007-5899: Fix information leak in output_add_rewrite_var() . php5 (5.2.0-8+etch8) stable-security; urgency=low . * NMU prepared for the security team by the package maintainer. * The following security issues are addressed with this update: - CVE-2007-3799: vulnerabilities in session_start - CVE-2007-3998: vulnerabilities in wordwrap - CVE-2007-4657: vulnerabilities in strspn/strcspn - CVE-2007-4658: vulnerability in money_format - CVE-2007-4659: race condition in zend_alter_ini_entry - CVE-2007-4660: vulnerability in chunk_split - CVE-2007-4662: buffer overflow in php_openssl_make_REQ Files: dcc70c58f342051e703057d2069cf256 1985 web optional php5_5.2.0-8+etch9~bpo31+1.dsc 556b0d255dfaad13efd9090b7f393b2b 121708 web optional php5_5.2.0-8+etch9~bpo31+1.diff.gz 58fa5ac3ec2f857f0ec029c0598b5dc4 215492 web optional php5-common_5.2.0-8+etch9~bpo31+1_i386.deb 6e0f0965416206894d014b3a3afe8de4 2405536 web optional libapache-mod-php5_5.2.0-8+etch9~bpo31+1_i386.deb b383d28c07140d89333bf6a49253ede1 2405920 web optional libapache2-mod-php5_5.2.0-8+etch9~bpo31+1_i386.deb dbc97167c3510b18f0c698c0a9556a7b 4744420 web optional php5-cgi_5.2.0-8+etch9~bpo31+1_i386.deb 1c985a8ca92bbc00795dd08bbd41a327 2390240 web optional php5-cli_5.2.0-8+etch9~bpo31+1_i386.deb b7ee42ab6bac8c3bce7bfdaa87b33014 342116 devel optional php5-dev_5.2.0-8+etch9~bpo31+1_i386.deb f3e3497f5fbb5479af26c3d62ac8abea 24200 web optional php5-curl_5.2.0-8+etch9~bpo31+1_i386.deb 62c407c57b63f85f05c8ca9af9f5b9f9 32976 web optional php5-gd_5.2.0-8+etch9~bpo31+1_i386.deb d3844ab3b685b73f0df23fa04433eeca 35306 web optional php5-imap_5.2.0-8+etch9~bpo31+1_i386.deb 65a1cde388d43d4bb09c28194f2f0b7e 43592 web optional php5-interbase_5.2.0-8+etch9~bpo31+1_i386.deb b111994744f82f525a3c41f7129ab8bd 17202 web optional php5-ldap_5.2.0-8+etch9~bpo31+1_i386.deb 864bb4e8f087810d695d530e1c996ca2 13030 web optional php5-mcrypt_5.2.0-8+etch9~bpo31+1_i386.deb f174f82b5de12210e912af349654a284 5258 web optional php5-mhash_5.2.0-8+etch9~bpo31+1_i386.deb 986b4e36b59387081aaeb9a9d2b12677 27164 web optional php5-mysql_5.2.0-8+etch9~bpo31+1_i386.deb 95bdeb077f57699278072002fc34f606 33536 web optional php5-odbc_5.2.0-8+etch9~bpo31+1_i386.deb 487605a5b517318b71666b22559f01b6 48966 web optional php5-pgsql_5.2.0-8+etch9~bpo31+1_i386.deb 572b378855be3a060bb9498893994afc 8650 web optional php5-pspell_5.2.0-8+etch9~bpo31+1_i386.deb c3995e959b44b73aa5c8dcb4c994d7d4 4924 web optional php5-recode_5.2.0-8+etch9~bpo31+1_i386.deb a33f001fa54b731d12d6e19d565114e9 11406 web optional php5-snmp_5.2.0-8+etch9~bpo31+1_i386.deb 59e48a2a6c7a945560cb2d9cfd4cec90 34662 web optional php5-sqlite_5.2.0-8+etch9~bpo31+1_i386.deb 4a5d0717d825ed2f331afa8912d88db6 18676 web optional php5-sybase_5.2.0-8+etch9~bpo31+1_i386.deb 670453b5411e144b05f1ab4a0cf43db4 16918 web optional php5-tidy_5.2.0-8+etch9~bpo31+1_i386.deb 6eba841d1dcabfee5424397a02e05ba9 36458 web optional php5-xmlrpc_5.2.0-8+etch9~bpo31+1_i386.deb 943ed6afff1be7352c44bb8fc6bb1b14 12520 web optional php5-xsl_5.2.0-8+etch9~bpo31+1_i386.deb 14d438a456dddc0fd9c3838d1f4fc11d 1052 web optional php5_5.2.0-8+etch9~bpo31+1_all.deb da5f88d2fec0b3fccf55b8729cdc551a 307040 web optional php-pear_5.2.0-8+etch9~bpo31+1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFHgVIC9u6Dud+QFyQRAkDmAKCel5uFt2ws1opYGmtapaPqbTcLXACgkutI iPY/ipi1TktAzoJpj85bCXo= =MDDp -----END PGP SIGNATURE-----