php8.2 Update Closes DoS and Memory-Disclosure Flaws

Debian released a php8.2 security update for bookworm that fixes three vulnerabilities (CVE-2025-14177, CVE-2025-14178, CVE-2025-14180). The flaws can cause denial of service or memory disclosure. Fixed in php8.2 8.2.30-1~deb12u1.

Part of the PlainSec briefing for 2026-03-02

Sources