Tuesday, June 14, 2016

Bugtraq: [SECURITY] [DSA 3602-1] php5 security update

-----BEGIN PGP SIGNED MESSAGE-----

Hash: SHA512

- ------------------------------------------------------------------------

-

Debian Security Advisory DSA-3602-1 security (at) debian (dot) org [email concealed]

http://ift.tt/1kZ5swi Salvatore Bonaccorso

June 14, 2016 http://ift.tt/1S3Txy1

- ------------------------------------------------------------------------

-

Package : php5

CVE ID : CVE-2013-7456 CVE-2016-3074 CVE-2016-4537 CVE-2016-4538

CVE-2016-4539 CVE-2016-4540 CVE-2016-4541 CVE-2016-4542

CVE-2016-4543 CVE-2016-4544 CVE-2016-5093 CVE-2016-5094

CVE-2016-5095 CVE-2016-5096

Several vulnerabilities were found in PHP, a general-purpose scripting

language commonly used for web application development.

The vulnerabilities are addressed by upgrading PHP to the new upstream

version 5.6.22, which includes additional bug fixes. Please refer to the

upstream changelog for more information:

http://ift.tt/1S40ufU

http://ift.tt/1tuo958

For the stable distribution (jessie), these problems have been fixed in

version 5.6.22+dfsg-0+deb8u1.

We recommend that you upgrade your php5 packages.

Further information about Debian Security Advisories, how to apply

these updates to your system and frequently asked questions can be

found at: http://ift.tt/1kZ5swi

Mailing list: debian-security-announce (at) lists.debian (dot) org [email concealed]

-----BEGIN PGP SIGNATURE-----

Version: GnuPG v1

iQIcBAEBCgAGBQJXYCMKAAoJEAVMuPMTQ89ELnoP/Rrm1tBhMDV0MKrOq4A3BgbT

/wzKJeYqyBX2a82mDtbxscybX5cfrFtorC1oKyoVr86MCzlAUUhAN15EQGIOuz+K

Zh88fIZ8aY5gdtWeHMYK2qLmxx3FQ35nvFpL2Bld3UVYdXlIREHl3q/x7vSdu5co

hfm6yz3141EJYn3TtHe6AwubVa6EUr6SkvhaBS3Ut7NXqtpgFH4Q2cVmItk4MHVD

c9RHG7nHc4JtlztIWE0M3k+/cT52i8n7CvEiO02E2etNA+1bd+t1ScH0wrcjf6A1

hUsy//W207oUDp0s/LzZ8zb/u9t/y/7+HE7pNcbEOSXp/AuS9M1CBpO5l8ecx4Wn

BDO05eKEbmGWJG4IIcSgZiTmeh4MJNHZ1YT4NiT0TiztLUUDRGGeTCyncy5vdwCi

n3Pf0jpAA5B4Xo7C6ja784o+36ZKsOXSYALSs341GGWLUJj+b1Yxf+icPDYkeZJk

ex4E1/knr+ArQflN4uIjyyF5yrYBZpqY4tt+5vftWvGA16xH5Z1bl/nTbyD/uDnN

uNBfiGZb6QXDhSxhiwiCcVCyQpIOPfevbP9SIpVbw2yQfZmS32xoHpCrtmbvg9vu

Uh0eukF3U0kD11gWpkYD9mhpjqJkGb3aEw8DGIGFT23/wIwVCzSO3vyuZx1JOPf1

jrMF8HEFf8CX8r0FcbWv

=Yriw

-----END PGP SIGNATURE-----

[ reply ]


from SecurityFocus Vulnerabilities http://ift.tt/1tuo6X0

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.