DSA-3689-1 php5 -- security update

Related Vulnerabilities: CVE-2016-7124   CVE-2016-7125   CVE-2016-7126   CVE-2016-7127   CVE-2016-7128   CVE-2016-7129   CVE-2016-7130   CVE-2016-7131   CVE-2016-7132   CVE-2016-7411   CVE-2016-7412   CVE-2016-7413   CVE-2016-7414   CVE-2016-7416   CVE-2016-7417   CVE-2016-7418  

Several vulnerabilities were found in PHP, a general-purpose scripting language commonly used for web application development. The vulnerabilities are addressed by upgrading PHP to the new upstream version 5.6.26, which includes additional bug fixes. Please refer to the upstream changelog for more information: https://php.net/ChangeLog-5.php#5.6.25 https://php.net/ChangeLog-5.php#5.6.26 For the stable distribution (jessie), these problems have been fixed in version 5.6.26+dfsg-0+deb8u1. We recommend that you upgrade your php5 packages.

Debian Security Advisory

DSA-3689-1 php5 -- security update

Date Reported:
08 Oct 2016
Affected Packages:
php5
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2016-7124, CVE-2016-7125, CVE-2016-7126, CVE-2016-7127, CVE-2016-7128, CVE-2016-7129, CVE-2016-7130, CVE-2016-7131, CVE-2016-7132, CVE-2016-7411, CVE-2016-7412, CVE-2016-7413, CVE-2016-7414, CVE-2016-7416, CVE-2016-7417, CVE-2016-7418.
More information:

Several vulnerabilities were found in PHP, a general-purpose scripting language commonly used for web application development.

The vulnerabilities are addressed by upgrading PHP to the new upstream version 5.6.26, which includes additional bug fixes. Please refer to the upstream changelog for more information:

For the stable distribution (jessie), these problems have been fixed in version 5.6.26+dfsg-0+deb8u1.

We recommend that you upgrade your php5 packages.