Updated phpbb3 packages has been released for Debian GNU/Linux 8 LTS
Package : phpbb3phpbb3 Security Update for Debian 8 LTS
Version : 3.0.12-5+deb8u3
CVE ID : CVE-2019-9826
Colin Snover discovered a denial-of-service vulnerability in phpBB3, a
full-featured web forum. Previous versions allowed users to run searches
that might result in long execution times and load on larger boards when
using the fulltext native search engine. To combat this, further
restrictions were introduced on search queries.
For Debian 8 "Jessie", this problem has been fixed in version
3.0.12-5+deb8u3.
We recommend that you upgrade your phpbb3 packages.
Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS