php5 (5.4.6-1ubuntu1.4) quantal-security; urgency=low
* SECURITY UPDATE: SSL cert validation spoofing via NULL character in
subjectAltName.
- debian/patches/CVE-2013-4248.patch: validate subjectAltName in
ext/openssl/openssl.c, added test to ext/openssl/tests/cve2013_4073*.
- CVE-2013-4248
Date: 2013-09-04 19:04:39.354356+00:00
Changed-By: Marc Deslauriers <[email protected]>
Signed-By: Ubuntu Archive Robot
<[email protected]>
https://launchpad.net/ubuntu/quantal/+source/php5/5.4.6-1ubuntu1.4
Sorry, changesfile not available.
--
Quantal-changes mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/quantal-changes