-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 28 Oct 2022 19:55:40 +0200 Source: php8.2 Architecture: source Version: 8.2.0~rc5-1 Distribution: experimental Urgency: medium Maintainer: Debian PHP Maintainers <team+pkg-php@tracker.debian.org> Changed-By: Ondřej Surý <ondrej@debian.org> Changes: php8.2 (8.2.0~rc5-1) experimental; urgency=medium . * New upstream version 8.2.0~rc5 + CVE-2022-31630: OOB read due to insufficient input validation in imageloadfont() + CVE-2022-37454: buffer overflow in hash_update() on long parameter Checksums-Sha1: 6975e89a4f98dc5f9f38b19ebc5535bc82686fd5 5471 php8.2_8.2.0~rc5-1.dsc d87762aa95b88793e3f6de8055f35dc29480d54a 12018772 php8.2_8.2.0~rc5.orig.tar.xz aa81086813cac4e57d65deb7540c70791ab21156 68156 php8.2_8.2.0~rc5-1.debian.tar.xz 8f6c209c41bb8e8e448033849fd6164e742ee5ad 33604 php8.2_8.2.0~rc5-1_amd64.buildinfo Checksums-Sha256: 745cd21bf6a7cd4512a9a716d5067cce9a790bf55e8004a617ef2c8dba7136e5 5471 php8.2_8.2.0~rc5-1.dsc 5dbd72106664b3588a047da557b6a99a3cdfcb83de9890cc3be9db5af8e4aa0e 12018772 php8.2_8.2.0~rc5.orig.tar.xz db8615becf9a2ade44b9601cd2f687cb00737b246297a617dca0f58937817712 68156 php8.2_8.2.0~rc5-1.debian.tar.xz 4e129effa225fc773a14900050d4bd68b2b953730c8e0a10171095deec1a86b3 33604 php8.2_8.2.0~rc5-1_amd64.buildinfo Files: 1dd484b833456064651da4d55e5d9a01 5471 php optional php8.2_8.2.0~rc5-1.dsc 306883e9f4aeac3bf2937eac61ac1006 12018772 php optional php8.2_8.2.0~rc5.orig.tar.xz 79260fa51a517dafbc511856c6d2e7d2 68156 php optional php8.2_8.2.0~rc5-1.debian.tar.xz bf8d09fe60023ee611b43f22c7a9bb9a 33604 php optional php8.2_8.2.0~rc5-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQKTBAEBCgB9FiEEw2Gx4wKVQ+vGJel9g3Kkd++uWcIFAmNcLQ5fFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEMz NjFCMUUzMDI5NTQzRUJDNjI1RTk3RDgzNzJBNDc3RUZBRTU5QzIACgkQg3Kkd++u WcLeTQ//cO1Q0ibrsJnUtk/oWuuqcdPphYZ/VE67SX9j5nPbzJUg74dxTpIaHQkE /oS1bOYKxSXG+u6F+gFJyko/TQ8W1S7wGj/x32eb8sItlrDWQ8OHts9G05TRydsA sq6FmfgFAo1VXC70e651Wj1fX5Y7n71m96BCH+6U142N4/OnvCU+jzhpjMRcd/42 AYYmVdtplTeCH9VbfieeSetfB+Fqv5VviuP8UfUclpxvzBgKSxuQyFvn+9ingUM0 2uIPXffVmtOhf3X4DOWjLE/fiLei+xUWg8rMJ7HhwL7c9XUyIF4+T0nqs/payxi+ jpGaxATIP7NLexuIsQ2z32kkXawybyLjHZpIPNXpSBI+ZfrGDrtaKjP7idjLcMyx qSnJZVtb/gOcIV1N50E15iQ/t6/FvoME+nOhQY6aT92Mt++bgfmkpyDOloRem7c2 NzPIKy0lv4QfqbbiCukH1mTiFOSAYubBaQZXDmk4P+KebcRVilkhjEyj4NxRZ3Wx kEuwcSHpESnEkcztcfTlj2Z9HyHuHN+FA3WuHt0bVmxFBayZnu6W9WV62nY3c5aK vD7FxiXqKy9lA8VIBOpTObgrIfoZfLkunHIBKoWHGyXtRokHgDU9QbbkU7zc3heh 4lZCDyQGL6rcmSfN8sqGX2RGYvAAUe+OE4TerqqlHBe5r263OIY= =DrYh -----END PGP SIGNATURE-----