[Bug 930115] Re: php5 5.3.2-1ubuntu4.13 introduced regression

Jean-Baptiste Lallement jean-baptiste at ubuntu.com
Fri Feb 10 12:59:17 UTC 2012


Thanks for your report. I confirm the change of behavior. This was
probably introduced in this change:

php5 (5.3.2-1ubuntu4.13) lucid-security; urgency=low

[...]
  * SECURITY UPDATE: magic_quotes_gpc remote disable vulnerability
    - debian/patches/php5-CVE-2012-0831.patch: always restore
      magic_quote_gpc on request shutdown
    - CVE-2012-0831


** CVE added: http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2012-0831

** Changed in: php5 (Ubuntu)
   Importance: Undecided => High

** Changed in: php5 (Ubuntu)
       Status: Confirmed => Triaged

** Also affects: php5 (Ubuntu Lucid)
   Importance: Undecided
       Status: New

** Tags added: lucid regression-update

** Changed in: php5 (Ubuntu Lucid)
       Status: New => Triaged

** Changed in: php5 (Ubuntu Lucid)
   Importance: Undecided => High

** Summary changed:

- php5 5.3.2-1ubuntu4.13 introduced regression
+ php5 5.3.2-1ubuntu4.13 introduced regression in magic_quotes_gpc

** Changed in: php5 (Ubuntu Lucid)
     Assignee: (unassigned) => Canonical Security Team (canonical-security)

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to php5 in Ubuntu.
https://bugs.launchpad.net/bugs/930115

Title:
  php5 5.3.2-1ubuntu4.13 introduced regression in magic_quotes_gpc

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/php5/+bug/930115/+subscriptions



More information about the Ubuntu-server-bugs mailing list