VYPR

rpm package

almalinux/php-pecl-xdebug3

pkg:rpm/almalinux/php-pecl-xdebug3

Vulnerabilities (42)

  • CVE-2022-31625HigJun 16, 2022
    affected < 3.1.2-1.module_el8.6.0+2739+efabdb8ffixed 3.1.2-1.module_el8.6.0+2739+efabdb8f

    In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplying invalid parameters to the parametrized query may lead to PHP attempting to free memory using uninitialized data as pointers. This could lead to RCE vul

  • CVE-2021-21708HigFeb 27, 2022
    affected < 3.1.2-1.module_el8.6.0+2739+efabdb8ffixed 3.1.2-1.module_el8.6.0+2739+efabdb8f

    In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_VALIDATE_FLOAT filter and min/max limits, if the filter fails, there is a possibility to trigger use of allocated memory after free, which can result it crashes,

Page 3 of 3