Bug#751364: [php-maint] Bug#751364: php5: heap-based buffer overflow in DNS TXT record parsing

2014-06-14 Thread Ondřej Surý
Hi Salvatore, I have prepared versions for unstable (already uploaded) and for wheezy (compiling right now) with patch from upstream. I'll submit it to team@s.d.o after it finishes the compilation. Whoever is doing squeeze LTS feel free to cherry-pick from git and commit back to our git. O. On

Bug#751364: php5: heap-based buffer overflow in DNS TXT record parsing

2014-06-11 Thread Salvatore Bonaccorso
Source: php5 Severity: grave Tags: security upstream Hi A heap-based buffer overflow was commited in [1], Red Hat Bugzilla reference at [2]. [1] https://github.com/php/php-src/commit/b34d7849ed90ced9345f8ea1c59bc8d101c18468 [2] https://bugzilla.redhat.com/show_bug.cgi?id=1108447 A CVE assign