Debian Security Advisory 1520-1 – It was discovered that the regex module in Smarty, a PHP templating engine, allows attackers to call arbitrary PHP functions via templates using the regex_replace plugin by a specially crafted search string.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/64628/dsa-1520-1.txt
Source: https://packetstormsecurity.com/files/64628/Debian-Linux-Security-Advisory-1520-1.html

