[<prev] [next>] [day] [month] [year] [list]
Message-ID: <20050706145145.GA2810@piware.de>
Date: Wed Jul 6 15:52:55 2005
From: martin.pitt at canonical.com (Martin Pitt)
Subject: [USN-147-2] Fixed php4-pear packages for USN-147-1
===========================================================
Ubuntu Security Notice USN-147-2 July 06, 2005
php4, php4-universe fixed packages
https://bugzilla.ubuntu.com/show_bug.cgi?id=12426
===========================================================
A security issue affects the following Ubuntu releases:
Ubuntu 4.10 (Warty Warthog)
Ubuntu 5.04 (Hoary Hedgehog)
The following packages are affected:
php4-pear
The problem can be corrected by upgrading the affected package to
version 4:4.3.8-3ubuntu7.10 (for Ubuntu 4.10), or 4:4.3.10-10ubuntu3.2
(for Ubuntu 5.04). In general, a standard system upgrade is
sufficient to effect the necessary changes.
Details follow:
USN-147-1 [1] fixed a remote code execution vulnerability in the
XMLRPC module of the PEAR library. Unfortunately the packages
announced in USN-147-1 were faulty and shipped broken xmlrpc modules.
The updated packages ship correct modules.
We apologize for the inconvenience.
[1] https://www.ubuntulinux.org/support/documentation/usn/usn-147-1
Updated packages for Ubuntu 4.10 (Warty Warthog):
Source archives:
http://security.ubuntu.com/ubuntu/pool/main/p/php4/php4_4.3.8-3ubuntu7.10.diff.gz
Size/MD5: 616071 98485600b0aa10939786f7b01cd34b40
http://security.ubuntu.com/ubuntu/pool/main/p/php4/php4_4.3.8-3ubuntu7.10.dsc
Size/MD5: 1626 ab42301d25d717d49a72bef2e8b019fc
http://security.ubuntu.com/ubuntu/pool/main/p/php4/php4_4.3.8.orig.tar.gz
Size/MD5: 4832570 dd69f8c89281f088eadf4ade3dbd39ee
Architecture independent packages:
http://security.ubuntu.com/ubuntu/pool/main/p/php4/php4-dev_4.3.8-3ubuntu7.10_all.deb
Size/MD5: 332318 3eeeec677634895e34a0f4c64560af40
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-pear_4.3.8-3ubuntu7.10_all.deb
Size/MD5: 333482 5e4864185f8136b6f0e804b696462b9f
amd64 architecture (Athlon64, Opteron, EM64T Xeon)
http://security.ubuntu.com/ubuntu/pool/main/p/php4/libapache2-mod-php4_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 1689232 75ba6d495b73990899eaa1f0d405c128
http://security.ubuntu.com/ubuntu/pool/main/p/php4/php4-cgi_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 3198332 601a21f8449eddacba10660ab36b558a
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-curl_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 17268 8dd71d3afe702f8b11826aa5339cafae
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-domxml_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 40430 519b201f31f8861f68999e2e116b9d16
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-gd_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 33498 b11241d1a7032b483a5322036e4dba46
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-ldap_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 21232 a5e962ce382b89a298989a8745e5e6f1
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-mcal_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 18406 686f05eba89af3ae8123e18638962e2a
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-mhash_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 7994 acbd7c447b7863cf6fed1683c6f9aadc
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-mysql_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 23112 c9b66886124d1b588d7a8167973ae0cb
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-odbc_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 28328 aa25c1dcca5329b35c3b9fd02a0ed771
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-recode_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 7614 c8032d7825a2863790baf9b50e8525a1
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-snmp_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 12974 316382090d8df0689a713097987b2019
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-sybase_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 21506 3d324c8ca134197f27a3e36e6cd604e2
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-xslt_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 17246 ea7ab011e7b3a5bfb48b754e0d736e64
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4_4.3.8-3ubuntu7.10_amd64.deb
Size/MD5: 1705100 4633e5daa738bb510e66b3f0cad4a556
i386 architecture (x86 compatible Intel/AMD)
http://security.ubuntu.com/ubuntu/pool/main/p/php4/libapache2-mod-php4_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 1631100 4df16813ce3dbde17d511574d2835f01
http://security.ubuntu.com/ubuntu/pool/main/p/php4/php4-cgi_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 3044444 e611e74c9b0c13a58f0e0b431d691273
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-curl_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 16848 f2d48c8ba1d1622f978682e92c1cd3f4
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-domxml_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 35558 47d4d480234a911d8471ad3e6cd1d6ca
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-gd_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 31068 313918ec087902d10568b954f259d2f0
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-ldap_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 19470 3d5cb8779e17acb207ef37b59340761a
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-mcal_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 17054 8f30ecfb3da96557de89b6738b1e31e8
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-mhash_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 7744 01b97d99746fd39f08fd61c54f74d48c
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-mysql_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 20904 993932ed1d15e6045119184527d35a70
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-odbc_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 26072 587207e34023175239c88f7bca3508cf
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-recode_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 7376 27849cbb53c0eb153c4ffed82bfe4bdf
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-snmp_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 12322 16ed6ad76a5c2d4591d1a8fd90ea13ed
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-sybase_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 20006 57aa51e658f0ff1211f8a68caaedfbf8
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-xslt_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 15884 8ee4b1bcff9902d36ecfc134da1246e0
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4_4.3.8-3ubuntu7.10_i386.deb
Size/MD5: 1645714 28d22d5cd74e68976a084d73f3b9ef21
powerpc architecture (Apple Macintosh G3/G4/G5)
http://security.ubuntu.com/ubuntu/pool/main/p/php4/libapache2-mod-php4_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 1690996 035299c8a28817f9cb799ba0facf141a
http://security.ubuntu.com/ubuntu/pool/main/p/php4/php4-cgi_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 3203834 e078602ee13671d317f5b1f1f3b991bf
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-curl_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 19080 987fdd203d15c645e88817070169a67d
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-domxml_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 38274 5ab71279aba56e87053b30460e6a936f
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-gd_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 34002 dcee79daa77c2c967a2279ad6d093004
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-ldap_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 21474 bae76feca9a4c0cc8c74a47037cd1b58
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-mcal_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 19306 05501076697f42d188b10fa5fe63c843
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-mhash_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 9318 33f167a6c034fef7bef16cfa8cf3363a
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-mysql_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 22682 889a0196350a4a797386b8b42d3c71a9
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-odbc_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 28404 97fce0b81ce498e666d9c28ef1ca9ef1
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-recode_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 9000 53d0b5f737cac1a92cc7a513a451285b
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-snmp_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 14326 ef06feac47fad7569770559e1e135e61
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-sybase_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 22194 f01f7617a77f3894baeb11c2eee07b0a
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4-xslt_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 18056 5225235a376e29310e382687ae25e46b
http://security.ubuntu.com/ubuntu/pool/universe/p/php4/php4_4.3.8-3ubuntu7.10_powerpc.deb
Size/MD5: 1708984 e43d5c25d7fefd300df0941d9e2027f8
Updated packages for Ubuntu 5.04 (Hoary Hedgehog):
Source archives:
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-universe_4.3.10-10ubuntu3.2.diff.gz
Size/MD5: 269758 01c5a92086852e2e5900cad3999e98dd
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-universe_4.3.10-10ubuntu3.2.dsc
Size/MD5: 1669 b960c23f8c8b730e5d8799cfbb6c5173
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-universe_4.3.10.orig.tar.gz
Size/MD5: 4892209 73f5d1f42e34efa534a09c6091b5a21e
Architecture independent packages:
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-pear_4.3.10-10ubuntu3.2_all.deb
Size/MD5: 249540 c31e3c6a1b683d179505a9b7710f307d
amd64 architecture (Athlon64, Opteron, EM64T Xeon)
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/libapache-mod-php4_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 1659024 34d1e64a99e988315f1942bcf0fd9620
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-curl_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 17812 4d7bfd832b6b3f074abc3eab9478919f
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-domxml_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 40782 95c5a91556330d58deadfcc8e1514404
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-gd_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 34258 d44093a3e2cd126a1418f7291de721a7
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-imap_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 37624 f3003362ad2fced35b4fce327756d93c
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-ldap_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 21388 99ac24bd1434d6ed8c3563b535de57a2
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-mcal_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 18868 ea13013a299967c3cc15c6eaf75acc2e
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-mhash_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 8232 396b159e54961ce84bc07d463a9ea6e0
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-mysql_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 23528 006990406eab8d4a978a1c084f128aa7
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-odbc_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 28764 c0c033d64e26589df81419c5f3d41143
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-recode_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 7900 f1ffcefca7d2ab9d7f2789c9ef115e79
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-snmp_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 13662 90b61d201efd208c29ff951fdff45210
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-sybase_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 22430 d23981d933115b7e2ced3215fbda863c
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-universe-common_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 124412 9f28af310afcb9906a400b0ea6c05ecb
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-xslt_4.3.10-10ubuntu3.2_amd64.deb
Size/MD5: 17556 0337e1e0549bd8fa0251ee6547052c35
i386 architecture (x86 compatible Intel/AMD)
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/libapache-mod-php4_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 1592414 5a2ec508949734627c40d3f66893a174
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-curl_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 17370 3c5279ab34b084ccb26d0a42e5c4dba5
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-domxml_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 35928 640521c68860580a07b816eed7aab330
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-gd_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 31614 56a195209ada388c30c248eb219819d8
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-imap_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 36222 cb8afd75b98404a5af2e35a3b95d50e2
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-ldap_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 19622 ca83e936ff6025b04478b79c92ee7b04
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-mcal_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 17410 8baab110e3b4c49e55e7473ed013f90c
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-mhash_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 7988 609cdd0cc8432e1aa15a6005be0a2bb4
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-mysql_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 21258 94d11f69605010e5eb5dbe04d449d08a
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-odbc_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 26392 829a91425f33e82091053808d9facb86
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-recode_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 7632 85e1f6f9a35896eccd9e56d51dbbfb21
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-snmp_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 12964 e4bb39db6afd4c03fee36ca345e3f80b
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-sybase_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 20820 13adbef148418d84ce1a3804ce744985
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-universe-common_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 124398 0bfde2d2936d4e4a036f0ee7e5255ff5
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-xslt_4.3.10-10ubuntu3.2_i386.deb
Size/MD5: 16128 cdcdaa2e315c41e09887f1986ba42aa3
powerpc architecture (Apple Macintosh G3/G4/G5)
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/libapache-mod-php4_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 1659148 7f31060c0c14a6babd862424e2c26742
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-curl_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 19628 d8f6c918a6531f983096c069e409322c
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-domxml_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 38652 3a7ffd1fb5c34fcb77532018cbe17aee
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-gd_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 34516 0a44b039e699db5135a567d11c554f2d
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-imap_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 37694 974fef5ea02d7f0954c7ef5fb6c5af97
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-ldap_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 21396 dabf93ded4945294610ea21868f997aa
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-mcal_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 19720 358bc7e4b61b5c69ba4738235bb7a3a8
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-mhash_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 9566 5d64357b88cd0fca9d06ff331880e027
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-mysql_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 23022 f15a75e595a4ef5c3f98699dc9874b9e
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-odbc_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 28674 76d00c859f2c42f01259ad57636c58bc
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-recode_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 9270 998c38572b6668a285eaf73e9e885ada
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-snmp_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 14954 7f667098d459481ddda0431b4f1a9956
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-sybase_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 23044 52ad965beaa6d3cefd34a1445ad1fcf9
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-universe-common_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 124410 1e918030db29790acd32ba0075b45e3d
http://security.ubuntu.com/ubuntu/pool/universe/p/php4-universe/php4-xslt_4.3.10-10ubuntu3.2_powerpc.deb
Size/MD5: 18262 2a0a02272722c892415eeeb3b73afaf5
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Digital signature
Url : http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20050706/2da1b73b/attachment.bin
Powered by blists - more mailing lists