*** This bug is a security vulnerability *** You have been subscribed to a public security bug by Alex Murray (alexmurray):
Ubuntu 18.04 currently deploys PHP 7.2.7 with the php7.2 package. However, PHP 7.2.8 fixes an important vulnerability with a critical solution to crippled functionality in a wide range of PHP scripts when running php-fpm. >From the PHP 7.2.8 changelog: "FPM: Fixed bug #73342 (Vulnerability in php-fpm by changing stdin to non-blocking)." For reference, the PHP bug is: https://bugs.php.net/bug.php?id=73342 I would request that the PHP 7.2 package be updated to at least 7.2.8 in order to facilitate adoption of this fix. ** Affects: php7.2 (Ubuntu) Importance: Undecided Status: New -- adopt PHP 7.2.8+ to fix vulnerability in php-fpm https://bugs.launchpad.net/bugs/1792148 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bug report. -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs