[php-maint] [SECURITY] [DSA 1444-1] New php5 packages fix several vulnerabilities

Jan Wagner waja at cyconet.org
Thu Jan 3 22:03:08 UTC 2008


Hi there,

On Thursday 03 January 2008 21:25, Moritz Muehlenhoff wrote:
> Package        : php5
> Vulnerability  : several
> Problem type   : remote
> Debian-specific: no
> CVE Id(s)      : CVE-2007-3799 CVE-2007-3998 CVE-2007-4657 CVE-2007-4658
> CVE-2007-4659 CVE-2007-4660 CVE-2007-4662 CVE-2007-5898 CVE-2007-5899
[...]
> For the stable distribution (etch), these problems have been fixed in
> version 5.2.0-8+etch9.

etch is out for a while. All my/our critical systems are migrated to etch. Is 
there demand fot continue backporting php5 from stable-security to 
sarge-backports?
I think I will backport 5.2.0-8+etch9 shortly and, if there is no invention, 
stop backporting it afterwards.

Let me your know opinions. With kind regards, Jan.
-- 
Never write mail to <waja at spamfalle.info>, you have been warned!
-----BEGIN GEEK CODE BLOCK-----
Version: 3.1
GIT d-- s+: a- C+++ UL++++ P+ L+++ E- W+++ N+++ o++ K++ w--- O M V- PS PE
Y++ PGP++ t-- 5 X R tv- b+ DI- D++ G++ e++ h-- r+++ y+++
------END GEEK CODE BLOCK------
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.alioth.debian.org/pipermail/pkg-php-maint/attachments/20080103/63fcd5c1/attachment.pgp 


More information about the pkg-php-maint mailing list