Debian 10230 Published by

Updated phpbb3 packages has been released for Debian GNU/Linux 8 LTS



Package : phpbb3
Version : 3.0.12-5+deb8u3
CVE ID : CVE-2019-9826

Colin Snover discovered a denial-of-service vulnerability in phpBB3, a
full-featured web forum. Previous versions allowed users to run searches
that might result in long execution times and load on larger boards when
using the fulltext native search engine. To combat this, further
restrictions were introduced on search queries.

For Debian 8 "Jessie", this problem has been fixed in version
3.0.12-5+deb8u3.

We recommend that you upgrade your phpbb3 packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS
  phpbb3 Security Update for Debian 8 LTS