Bug#523028: [php-maint] Bug#523028: php5: multiple vulnerabilities

2009-04-07 Thread sean finney
severity 523028 important clone 523028 -1 retitle 523028 CVE-2008-5814: XSS vulnerability in PHP <= 5.2.7 retitle -1 CVE-2009-0754: mbstring.func_overload setting leakage across vhosts hi michael, in the future please file seperate bugs for seperate vulnerabilities. i would say neither of these

Bug#523028: php5: multiple vulnerabilities

2009-04-07 Thread Michael S. Gilbert
Package: php5 Severity: grave Tags: security Hi, the following CVE (Common Vulnerabilities & Exposures) ids were published for php5. CVE-2008-5814[0]: | Cross-site scripting (XSS) vulnerability in PHP, possibly 5.2.7 and | earlier, when display_errors is enabled, allows remote attackers to | inje