This was unfortunately lost it seems. I was able to confirm that trusty is still affected - later php versions seem fine.
I subscribe Marc who did the update and properly tag the bug as update regression. Fix should be [1] but I want to leave that decision to Marc - not to break the CVe by that or anything like it. [1]: http://git.php.net/?p=php- src.git;a=commit;h=c6bd054b86c52948505be7409ad8d6488db062f6 ** Tags added: regression-update -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1633031 Title: exif_read_data broken in a lot of use cases by the CVE-2016-6291 bugfix To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/php5/+bug/1633031/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs