• Bug#1104548: marked as done (libphp-adodb: CVE-2025-46337) (2/2)

    From Debian Bug Tracking System@1:229/2 to All on Sat Jun 21 11:20:01 2025
    [continued from previous message]

    s1S7YzLw+dH55nYtFfxxzM7dZzENrKKcbnM5drDC1ozDmVbd2qeLPpIJQYqnZfxUBFMCRU3/46ej2
    dXYvUuB5gpUiKCXFGRJ7xhL/b2mPnxu/PRlG7cEGHae9W035gySnCDA21xQeBFPofKXzx31kb+DFo
    FUh17/+rUabvaFwwvYjJU/psExTKaC9bI+aLSm2qCikm6WlJiZYExyIZnl257dgQP8XD3/fPCMjLw
    Z9sprhoi8eNEn56uXiu89QUajAJNRnuSvP36X/J5nNb6odX5dhd9MVcIgWyrWU+MPGz1FMVYK+iGU
    Fb9+yn2g==;
    Received: from dak by fasolo.debian.org with local (Exim 4.94.2)
    (envelope-from <envelope@ftp-master.debian.org>)
    id 1uSuLc-00CbTj-0p; Sat, 21 Jun 2025 09:17:16 +0000
    From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
    Reply-To: Leandro Cunha <leandrocunha016@gmail.com>
    To: 1104548-close@bugs.debian.org
    X-DAK: dak process-policy
    X-Debian: DAK
    X-Debian-Package: libphp-adodb
    Debian: DAK
    Debian-Changes: libphp-adodb_5.21.4-1+deb12u1_amd64.changes
    Debian-Source: libphp-adodb
    Debian-Version: 5.21.4-1+deb12u1
    Debian-Architecture: source all
    Debian-Suite: proposed-updates
    Debian-Archive-Action: accept
    MIME-Version: 1.0
    Subject: Bug#1104548: fixed in libphp-adodb 5.21.4-1+deb12u1
    Content-Type: multipart/signed; micalg="pgp-sha256";
    protocol="application/pgp-signature";
    boundary="===============4662113178030042432=="
    Message-Id: <E1uSuLc-00CbTj-0p@fasolo.debian.org>
    Date: Sat, 21 Jun 2025 09:17:16 +0000

    --===============4662113178030042432==
    Content-Type: text/plain; charset="utf-8"
    Content-Transfer-Encoding: quoted-printable

    Source: libphp-adodb
    Source-Version: 5.21.4-1+deb12u1
    Done: Leandro Cunha <leandrocunha016@gmail.com>

    We believe that the bug you reported is fixed in the latest version of libphp-adodb, which is due to be installed in the Debian FTP archive.

    A summary of the changes between this version and the previous one is
    attached.

    Thank you for reporting the bug, which will now be closed. If you
    have further comments please address them to 1104548@bugs.debian.org,
    and the maintainer will reopen the bug report if appropriate.

    Debian distribution maintenance software
    pp.
    Leandro Cunha <leandrocunha016@gmail.com> (supplier of updated libphp-adodb package)

    (This message was generated automatically at their request; if you
    believe that there is a problem with it please contact the archive administrators by mailing ftpmaster@ftp-master.debian.org)


    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512

    Format: 1.8
    Date: Tue, 06 May 2025 18:39:03 -0300
    Source: libphp-adodb
    Binary: libphp-adodb
    Architecture: source all
    Version: 5.21.4-1+deb12u1
    Distribution: bookworm
    Urgency: high
    Maintainer: Cameron Dale <camrdale@gmail.com>
    Changed-By: Leandro Cunha <leandrocunha016@gmail.com>
    Description:
    libphp-adodb -
    Closes: 1104548
    Changes:
    libphp-adodb (5.21.4-1+deb12u1) bookworm; urgency=high
    .
    * Non-maintainer upload.
    + Fix SQL injection in pg_insert_id(). (Closes: #1104548, CVE-2025-46337) Checksums-Sha1:
    b3f9138d33e5592d0000b0716853022f350e1272 1950 libphp-adodb_5.21.4-1+deb12u1.dsc
    3f37975097af84eb7083ea7c7dee04c5d9613aac 435699 libphp-adodb_5.21.4.orig.tar.gz
    9def2fc0b2956b479931d29c5a448a2434139e6e 8852 libphp-adodb_5.21.4-1+deb12u1.debian.tar.xz
    ebb4dc950a190d0602b0b0d089ef0129b4f78ab4 323772 libphp-adodb_5.21.4-1+deb12u1_all.deb
    96dbb4306badabd89506b3e7c7c4e92ecb2ca4ba 6995 libphp-adodb_5.21.4-1+deb12u1_amd64.buildinfo
    Checksums-Sha256:
    97c2d30e947fee96c84db113e7c1d6402cff9dcd62d1bfcab2d1410b866d32fa 1950 libphp-adodb_5.21.4-1+deb12u1.dsc
    422f73a60876f285182f6c0bebe4d83318e0282ae1dd85b66a8283072f8ee856 435699 libphp-adodb_5.21.4.orig.tar.gz
    2bb745cf6f7167c6d9ce981cb79884ae0b2235461cc30d682267d1b4fdd83044 8852 libphp-adodb_5.21.4-1+deb12u1.debian.tar.xz
    28df51e601327a95a3c82f27efef497fa33cd1812027b0f8fd020d404c727240 323772 libphp-adodb_5.21.4-1+deb12u1_all.deb
    5b15cf076c7ee127fb072184dffba1e3cd6fce1b10dbadc641fe3c69261afd95 6995 libphp-adodb_5.21.4-1+deb12u1_amd64.buildinfo
    Files:
    3726b8275ee62a8e02887c572c0a13b8 1950 php optional libphp-adodb_5.21.4-1+deb12u1.dsc
    4a844398e129c71bc23c43696b109049 435699 php optional libphp-adodb_5.21.4.orig.tar.gz
    9d541c5f4a3440731c467afd1d0af518 8852 php optional libphp-adodb_5.21.4-1+deb12u1.debian.tar.xz
    f50ad111942a43194fc178572ee3c8d6 323772 php optional libphp-adodb_5.21.4-1+deb12u1_all.deb
    f786e11c2de8c3fbc3af68ace0aef1b8 6995 php optional libphp-adodb_5.21.4-1+deb12u1_amd64.buildinfo

    -----BEGIN PGP SIGNATURE-----

    iQIzBAEBCgAdFiEEfncpR22H1vEdkazLwpPntGGCWs4FAmhUlK0ACgkQwpPntGGC Ws4pdg//VZSztmOoUcx4FVAZeqEYrrzDZBfvNVZsO8CU8oJ41wyammo3i5jfvin7 dXURV8n/NA++F+HcTNVHSTWc+B2S3QxAyffzJ+FiGXmXVkEuN6oNlSjg3D1ZLiJc RAlpBFtCf1wcKwtlFjDZ0zlBsHpZyuP9PF/8GjlZ1O8ycHrVklY0mq4Zw1CaT1Lv iyzWMzYHSTqiACX46Nut1Q7BwUIOmnsE3H1YB7HTel1+tq97+PrQNvZIlNbvX8Cw syDGjdw0X5qGuBIawaZUGzAmItTntu5B6rLVXoDgPYVfhYMKgiLlE9s10hiaWL1C 3vxBm/DXSnaW7W/gKNiv9hSjYqKqeI16Hfm8AKBZxECM84ZK1OAcMstgC1AnAYA7 AG6m87MzLgY/XkDFH1RlbwXWFkRPQ0+Xsvo1XXXZ6YDsyvKGS5EOSdq80bNVOWxM 2qul5ONittG8M+50e0/Hg44xyQXMobXSc4+kh/slNn0hmesTObJR6jGawfPCL0Xq qxG9B6zH+YBTkZnftGz1S0VRyz98nEv2ILiWlaLN+u86iejvarBz6oKW4e7bhlcm 7bWWBYsce+sEETTBPr9YXSSYA54iguBo8G1KiOAA6Wzl+vHUeTwb/Bss9i5qzMXy +Xr20metO0UnP6bisjUKiG0J0bZs8CieYWGIGqtTwbbtw3ZqFFM=
    =A8n/
    -----END PGP SIGNATURE-----


    --==============F62113178030042432=Content-Type: application/pgp-signature

    -----BEGIN PGP SIGNATURE-----

    iHUEABYIAB0WIQTziqJOuF8J+ZI8pJSb9qggYcy5IQUCaFZ4mwAKCRCb9qggYcy5 IQzkAP97ze0WKetJcgtHfjysFtMhQo3j/95Dugh+Wwci/FggwgEAhmbJNAKehdt5 R+YiHTtdsTYp/MIvcddqixqJ9l3O/gU=au6Y
    -----END PGP SIGNATURE-----

    --==============F62113178030042432==--

    --- SoupGate-Win32 v1.05
    * Origin: you cannot sedate... all the things you hate (1:229/2)