-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.0 Source: php5 Binary: php5, php5-common, libapache2-mod-php5, libapache2-mod-php5filter, php5-cgi, php5-cli, php5-fpm, libphp5-embed, php5-dev, php5-dbg, php-pear, php5-curl, php5-enchant, php5-gd, php5-gmp, php5-imap, php5-interbase, php5-intl, php5-ldap, php5-mcrypt, php5-mysql, php5-mysqlnd, php5-odbc, php5-pgsql, php5-pspell, php5-recode, php5-snmp, php5-sqlite, php5-sybase, php5-tidy, php5-xmlrpc, php5-xsl Architecture: any all Version: 5.4.36-0+deb7u3 Maintainer: Debian PHP Maintainers <[email protected]> Uploaders: Ondřej Surý <[email protected]>, Sean Finney <[email protected]>, Thijs Kinkhorst <[email protected]>, Lior Kaplan <[email protected]>, William Dauchy <[email protected]> Homepage: http://www.php.net/ Standards-Version: 3.9.3 Vcs-Browser: http://git.debian.org/?p=pkg-php/php.git Vcs-Git: git://git.debian.org/pkg-php/php.git Build-Depends: apache2-prefork-dev, autoconf (>= 2.63), automake (>= 1.11) | automake1.11, bison, chrpath, debhelper (>= 5), firebird-dev [!hurd-any !m68k !hppa !ppc64] | firebird2.5-dev [!hurd-any !m68k !hppa !ppc64] | firebird2.1-dev [!hurd-any !m68k !hppa !ppc64], flex, freetds-dev, hardening-wrapper, libapr1-dev (>= 1.2.7-8), libbz2-dev, libc-client-dev, libcurl4-openssl-dev | libcurl-dev, libdb-dev, libenchant-dev, libevent-dev (>= 1.4.11), libexpat1-dev (>= 1.95.2-2.1), libfreetype6-dev, libgcrypt11-dev, libgd2-xpm-dev, libglib2.0-dev, libgmp3-dev, libicu-dev, libjpeg-dev | libjpeg62-dev, libkrb5-dev, libldap2-dev, libmagic-dev, libmcrypt-dev, libmhash-dev (>= 0.8.8), libmysqlclient-dev | libmysqlclient15-dev, libonig-dev, libpam0g-dev, libpcre3-dev (>= 6.6), libpng-dev | libpng12-dev, libpq-dev, libpspell-dev, libqdbm-dev, librecode-dev, libsasl2-dev, libsnmp-dev, libsqlite3-dev, libssl-dev, libtidy-dev, libtool (>= 2.2), libwrap0-dev, libxmltok1-dev, libxml2-dev, libxslt1-dev (>= 1.0.18), locales-all | language-pack-de, mysql-server, netbase, netcat-traditional, quilt, re2c, unixodbc-dev, zlib1g-dev, tzdata Build-Conflicts: bind-dev Package-List: libapache2-mod-php5 deb httpd optional libapache2-mod-php5filter deb httpd extra libphp5-embed deb php optional php-pear deb php optional php5 deb php optional php5-cgi deb php optional php5-cli deb php optional php5-common deb php optional php5-curl deb php optional php5-dbg deb debug extra php5-dev deb php optional php5-enchant deb php optional php5-fpm deb php optional php5-gd deb php optional php5-gmp deb php optional php5-imap deb php optional php5-interbase deb php optional php5-intl deb php optional php5-ldap deb php optional php5-mcrypt deb php optional php5-mysql deb php optional php5-mysqlnd deb php extra php5-odbc deb php optional php5-pgsql deb php optional php5-pspell deb php optional php5-recode deb php optional php5-snmp deb php optional php5-sqlite deb php optional php5-sybase deb php optional php5-tidy deb php optional php5-xmlrpc deb php optional php5-xsl deb php optional Checksums-Sha1: 44070647fd99915edf64a1fba4967cd1f4b25b76 14708270 php5_5.4.36.orig.tar.gz 47b48b53fa0e51534daf54e38c8e9c0efe0d0883 787493 php5_5.4.36-0+deb7u3.diff.gz Checksums-Sha256: e11851662222765d6ab6e671adc983c657d5358a183856b43a5bad0c612d2959 14708270 php5_5.4.36.orig.tar.gz 4654c9f97ddb1e1cdaed6643e79ba92716a9accd6d901da4c58755cdeed7508b 787493 php5_5.4.36-0+deb7u3.diff.gz Files: d724ec84124ec948a7a493b74546efef 14708270 php5_5.4.36.orig.tar.gz 0737d827a37dc456ce2e299918387092 787493 php5_5.4.36-0+deb7u3.diff.gz -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQJ8BAEBCgBmBQJUr4+5XxSAAAAAAC4AKGlzc3Vlci1mcHJAbm90YXRpb25zLm9w ZW5wZ3AuZmlmdGhob3JzZW1hbi5uZXQzMEI5MzNEODBGQ0UzRDk4MUEyRDM4RkIw Qzk5QjcwRUY0RkNCQjA3AAoJEAyZtw70/LsHOHkP/jRHBbxwbPhT3PpSr92XTmSQ zz8ZorA0pxzCbNdvvGOS9P34MFC2MF3nmwOjGeZayTj5grkbCNkoBBI9dMv2SBZu wURKB7bBr875Xt41AiJWbpDmT82R/FVl4jLMOqGFG21U+iZaEm3m3B60C4x8V15Z K+w5J4SCpyiNR+mFDpKhHZDFRNDR9oKBwkwuAAEXi1JdiZd/6bOuxl4VJ+Gbryz4 EWiOTLV6RTx7bJBeuROTQcDH+sxOgiM/ToWUROokVyCkjBXVOBxDFnPsJWKr52/H SSuDZp8sqdrKXYzZ5pb2UL0faLY9qe1Yb2Bfk+lcgbqM6IZpdonKJ7wL3ERLacem 5mgAOG3JYh3ryEOHp31wBvnwxeuhNHsK2Ps9OhVdyXr/cqAYkZEfR0laC7k66S3b La9UkEgeA0mtOwBBsB95vGGf99fE90/0IaXlZSYZmwiNEDcc1bIkWW/3Tqjepnu4 6xVnszJozqG9HZja6HdYoZbGkFnUqiUwfYgHx2AZLUKLEOP8hKUnh7Ov/MdD/RUx B1T3R70C3mmgjlVzh/oK/3nq0bTCpNea1TtPQuS+Iec4XIASEjxwroTw6mXILyoR z40W8cfCSjAf8y/22II8iTMcKpCWtMBVc2BUx1EYc+ojnt57nX80Le/8K1A8H3Be tn9mdc9o/p0nAmoo+0kc =cRF1 -----END PGP SIGNATURE----- Changes: php5 (5.4.36-0+deb7u3) wheezy-security; urgency=medium * Fix fileinfo out-of-bounds memory access * Explicitly remove readelf.c to prove we are not vulnerable to recent readelf vulnerabilities (CVE-2014-8116) -- Ondřej Surý <[email protected]> Tue, 06 Jan 2015 14:46:42 +0100