Processed (with 5 errors): Re: [php-maint] Bug#523028: php5: multiple vulnerabilities

2009-04-07 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 523028 important Bug#523028: php5: multiple vulnerabilities Severity set to `important' from `grave' > clone 523028 -1 Bug#523028: php5: multiple vulnerabilities Bug 523028 cloned as bug 523049. > retitle 523028

Bug#523028: [php-maint] Bug#523028: php5: multiple vulnerabilities

2009-04-07 Thread sean finney
severity 523028 important clone 523028 -1 retitle 523028 CVE-2008-5814: XSS vulnerability in PHP <= 5.2.7 retitle -1 CVE-2009-0754: mbstring.func_overload setting leakage across vhosts hi michael, in the future please file seperate bugs for seperate vulnerabilities. i would say neither of these

Bug#523028: php5: multiple vulnerabilities

2009-04-07 Thread Michael S. Gilbert
Package: php5 Severity: grave Tags: security Hi, the following CVE (Common Vulnerabilities & Exposures) ids were published for php5. CVE-2008-5814[0]: | Cross-site scripting (XSS) vulnerability in PHP, possibly 5.2.7 and | earlier, when display_errors is enabled, allows remote attackers to | inje