Source: php8.4
Version: 8.4.20-1
Severity: grave
Tags: security upstream
Justification: user security hole
X-Debbugs-Cc: [email protected], Debian Security Team <[email protected]>

Hi,

The following vulnerabilities were published for php8.4.

CVE-2025-14179[0]
CVE-2026-6104[1]
CVE-2026-6722[2]
CVE-2026-6735[3]
CVE-2026-7258[4]
CVE-2026-7259[5]
CVE-2026-7261[6]
CVE-2026-7262[7]
CVE-2026-7263[8]
CVE-2026-7568[9]

Filling the bug as they are already fixed instable but not yet in
unstable and so fork.

If you fix the vulnerabilities please also make sure to include the
CVE (Common Vulnerabilities & Exposures) ids in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2025-14179
    https://www.cve.org/CVERecord?id=CVE-2025-14179
[1] https://security-tracker.debian.org/tracker/CVE-2026-6104
    https://www.cve.org/CVERecord?id=CVE-2026-6104
[2] https://security-tracker.debian.org/tracker/CVE-2026-6722
    https://www.cve.org/CVERecord?id=CVE-2026-6722
[3] https://security-tracker.debian.org/tracker/CVE-2026-6735
    https://www.cve.org/CVERecord?id=CVE-2026-6735
[4] https://security-tracker.debian.org/tracker/CVE-2026-7258
    https://www.cve.org/CVERecord?id=CVE-2026-7258
[5] https://security-tracker.debian.org/tracker/CVE-2026-7259
    https://www.cve.org/CVERecord?id=CVE-2026-7259
[6] https://security-tracker.debian.org/tracker/CVE-2026-7261
    https://www.cve.org/CVERecord?id=CVE-2026-7261
[7] https://security-tracker.debian.org/tracker/CVE-2026-7262
    https://www.cve.org/CVERecord?id=CVE-2026-7262
[8] https://security-tracker.debian.org/tracker/CVE-2026-7263
    https://www.cve.org/CVERecord?id=CVE-2026-7263
[9] https://security-tracker.debian.org/tracker/CVE-2026-7568
    https://www.cve.org/CVERecord?id=CVE-2026-7568

Regards,
Salvatore

Reply via email to