Submitted by KeesCook on Wed, 2006-07-26 12:06
Description:
===========================================================
Ubuntu Security Notice USN-320-2 July 26, 2006
php4 regression
https://launchpad.net/bugs/53581
===========================================================
A security issue affects the following Ubuntu releases:
Ubuntu 5.04
This advisory also applies to the corresponding versions of
Kubuntu, Edubuntu, and Xubuntu.
The problem can be corrected by upgrading your system to the
following package versions:
Ubuntu 5.04:
libapache2-mod-php4 4:4.3.10-10ubuntu4.6
php4-cgi 4:4.3.10-10ubuntu4.6
php4-cli 4:4.3.10-10ubuntu4.6
In general, a standard system upgrade is sufficient to effect the
necessary changes.
Details follow:
USN-320-2 fixed several vulnerabilities in PHP. James Manning
discovered that the Ubuntu 5.04 update introduced a regression, the
function tempnam() caused a crash of the PHP interpreter in some
circumstances. The updated packages fix this.


