-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 17 Jun 2024 15:33:14 +0200 Source: php8.2 Architecture: source Version: 8.2.20-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: Debian PHP Maintainers Changed-By: Ondřej Surý Changes: php8.2 (8.2.20-1~deb12u1) bookworm-security; urgency=high . * New upstream version 8.2.20 + [CVE-2024-4577]: Bypass of CVE-2012-1823, Argument Injection in PHP-CGI. + [CVE-2024-5458]: Filter bypass in filter_var FILTER_VALIDATE_URL. + [CVE-2024-5585]: Bypass of CVE-2024-1874. * Fix GH-14480: Method visibility issue introduced in version 8.2.20. Checksums-Sha1: e9980f15d4db115fa8c28547b64a843fea677bbf 5726 php8.2_8.2.20-1~deb12u1.dsc 0d71ac95516541f149fd8a93cbf8f5cc8ce7085c 12097568 php8.2_8.2.20.orig.tar.xz d78975ad55dab257475e6e9b4dbaac467dbc90b6 858 php8.2_8.2.20.orig.tar.xz.asc 466f0071635a58881957016edf5f085e1852fb3a 69932 php8.2_8.2.20-1~deb12u1.debian.tar.xz ac92beb72562be3fa384d2ad7611e46de6b057d7 34545 php8.2_8.2.20-1~deb12u1_amd64.buildinfo Checksums-Sha256: a0e649b7d964f7c0b2d84d35b0095a94f61d9db4a569ae073f930514331ee800 5726 php8.2_8.2.20-1~deb12u1.dsc 4474cc430febef6de7be958f2c37253e5524d5c5331a7e1765cd2d2234881e50 12097568 php8.2_8.2.20.orig.tar.xz a880d05e2ade89cb2cf38ba849c2379211c6a61508366950cec4d919a09b627d 858 php8.2_8.2.20.orig.tar.xz.asc 7a0a1a4e52d62a52b4b7c2ed50149e13b2334d1db2e60b94a05fcc116bf7ea5e 69932 php8.2_8.2.20-1~deb12u1.debian.tar.xz f8047c07a25cb82ab95954c62dd327cd461ebc9f779ebeca22377a8283c248cb 34545 php8.2_8.2.20-1~deb12u1_amd64.buildinfo Files: 9e88db3b5a6c3c4e3bd331909a508f3d 5726 php optional php8.2_8.2.20-1~deb12u1.dsc 9478294cb87946891f70d5aa5f959bc3 12097568 php optional php8.2_8.2.20.orig.tar.xz 26a79fc41183ff0016b01f82f2e48880 858 php optional php8.2_8.2.20.orig.tar.xz.asc 88309db736e8def1544be492e7431581 69932 php optional php8.2_8.2.20-1~deb12u1.debian.tar.xz f82ff0893be35e74977460820a1c2ae8 34545 php optional php8.2_8.2.20-1~deb12u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQKTBAEBCgB9FiEEw2Gx4wKVQ+vGJel9g3Kkd++uWcIFAmZxONJfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEMz NjFCMUUzMDI5NTQzRUJDNjI1RTk3RDgzNzJBNDc3RUZBRTU5QzIACgkQg3Kkd++u WcLlpA//bpLRuzI0hlevx0pkPyN2FWL4zdt+LA+DknkIvtVoADHa0G7k/rlt11uq NN/oNbNcoTUEPj2/6H+mDaeOdt8r5BaEGVYkBP8JsikJKJxNh+eyFgsi+B8z8LZG MZaxwozBOwIPtl0jVO3+wYwCcRvHQPjeA/Fek7AoqbIdYph67vLTJuoNG0lWxlu4 9KCROijUX/qfLIt6mOqgJfUBntCNRxSQ0FwuhpIU/8Sad2Bd3t7YsY/b0mJtD6Jd rl0zZwf9l2nVEerLTsEsDS++P3J12H+kXcDOxT/q1oCamHJCJZJbcXJDprp559Tj bc2IYZstICXCalZhko1hAK7zrNrwC2T2IPkjptUKUHEgnuzYn+Cx2nVyz9023NMB TV8wk+TQ5KKLPcDWxnEZ8KOLIQstwFc9xXbogkqgbwoY99OfMMPKxmlcdtVGN2B5 OMD9s2RA6QN//L6kodat7/QECzG0SLM95O8gaq+XJLOREemflPiONXYhPGAlow/y TgfwYoDcxCMnQwhHLhWKVRDkGqX40IHikYXlGHDunx7wZLWxrbzDLt8Ex/Po5MVQ zKE4ps7QcwhfOEtK76JyLYDM4dtQ1qk0rXetg0Nqp3XZMywhXZoLdZGcKZ/36rTq xJQfcW/KspUw1KVbz3DFV5rmti3yjidi1CqIj3AEKvCxe4Ek9f4= =+6lG -----END PGP SIGNATURE-----