rpm package
almalinux/php-pecl-xdebug3
pkg:rpm/almalinux/php-pecl-xdebug3
Vulnerabilities (42)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2022-31625 | Hig | 8.1 | < 3.1.2-1.module_el8.6.0+2739+efabdb8f | 3.1.2-1.module_el8.6.0+2739+efabdb8f | Jun 16, 2022 | In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplying invalid parameters to the parametrized query may lead to PHP attempting to free memory using uninitialized data as pointers. This could lead to RCE vul | |
| CVE-2021-21708 | Hig | 8.2 | < 3.1.2-1.module_el8.6.0+2739+efabdb8f | 3.1.2-1.module_el8.6.0+2739+efabdb8f | Feb 27, 2022 | In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_VALIDATE_FLOAT filter and min/max limits, if the filter fails, there is a possibility to trigger use of allocated memory after free, which can result it crashes, |
- affected < 3.1.2-1.module_el8.6.0+2739+efabdb8ffixed 3.1.2-1.module_el8.6.0+2739+efabdb8f
In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplying invalid parameters to the parametrized query may lead to PHP attempting to free memory using uninitialized data as pointers. This could lead to RCE vul
- affected < 3.1.2-1.module_el8.6.0+2739+efabdb8ffixed 3.1.2-1.module_el8.6.0+2739+efabdb8f
In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_VALIDATE_FLOAT filter and min/max limits, if the filter fails, there is a possibility to trigger use of allocated memory after free, which can result it crashes,
Page 3 of 3