Bug#1014533: php8.1: CVE-2022-31625 CVE-2022-31626

2022-07-07 Thread Moritz Muehlenhoff
Hi Ondřej, On Thu, Jul 07, 2022 at 05:57:24PM +0200, Ondřej Surý wrote: > Hi, > > thanks for the poke. > > Would it be also ok to do the php7.4 via bullseye-security or do you > want me specifically to do the stable-updates? The two issues are not the most severe, but we can do a DSA. I'll

Bug#1014533: php8.1: CVE-2022-31625 CVE-2022-31626

2022-07-07 Thread Ondřej Surý
Hi, thanks for the poke. Would it be also ok to do the php7.4 via bullseye-security or do you want me specifically to do the stable-updates? Ondrej -- Ondřej Surý (He/Him) ond...@sury.org > On 7. 7. 2022, at 17:42, Moritz Mühlenhoff wrote: > > Source: php8.1 > X-Debbugs-CC:

Bug#1014533: php8.1: CVE-2022-31625 CVE-2022-31626

2022-07-07 Thread Moritz Mühlenhoff
Source: php8.1 X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerabilities were published for php8.1. CVE-2022-31625[0]: | In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x | below 8.1.7, when using Postgres database extension,