Public bug reported:

PHP 8.3.6 was just released. It is a bug fix only release and includes
fixes for 4 CVEs. https://www.php.net/ChangeLog-8.php#8.3.6

Since it does not affect feature freeze and reduces the burden on the
security team, let's attempt to push this into noble before the final
freeze.

CVE-2024-1874
CVE-2024-2756
CVE-2024-3096
CVE-2024-2757

** Affects: php8.3 (Ubuntu)
     Importance: Undecided
     Assignee: Athos Ribeiro (athos-ribeiro)
         Status: In Progress


** Tags: server-todo

** Description changed:

  PHP 8.3.6 was just released. It is a bug fix only release and includes
  fixes for 4 CVEs.
  
  Since it does not affect feature freeze and reduces the burden on the
  security team, let's attempt to push this into noble before the final
  freeze.
+ 
+ CVE-2024-1874
+ CVE-2024-2756
+ CVE-2024-3096
+ CVE-2024-2757

** Changed in: php8.3 (Ubuntu)
     Assignee: (unassigned) => Athos Ribeiro (athos-ribeiro)

** Changed in: php8.3 (Ubuntu)
       Status: New => In Progress

** Tags added: server-todo

** Description changed:

  PHP 8.3.6 was just released. It is a bug fix only release and includes
- fixes for 4 CVEs.
+ fixes for 4 CVEs. https://www.php.net/ChangeLog-8.php#8.3.6
  
  Since it does not affect feature freeze and reduces the burden on the
  security team, let's attempt to push this into noble before the final
  freeze.
  
  CVE-2024-1874
  CVE-2024-2756
  CVE-2024-3096
  CVE-2024-2757

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2061147

Title:
  Please merge PHP 8.3.6

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/php8.3/+bug/2061147/+subscriptions


-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to