<?xml version="1.0" encoding="UTF-8"?>
<cvrfdoc xmlns="http://www.icasi.org/CVRF/schema/cvrf/1.1" xmlns:cvrf="http://www.icasi.org/CVRF/schema/cvrf/1.1">
  <DocumentTitle xml:lang="en">php8-8.3.19-1.1 on GA media</DocumentTitle>
  <DocumentType>SUSE Patch</DocumentType>
  <DocumentPublisher Type="Vendor">
    <ContactDetails>security@suse.de</ContactDetails>
    <IssuingAuthority>SUSE Security Team</IssuingAuthority>
  </DocumentPublisher>
  <DocumentTracking>
    <Identification>
      <ID>openSUSE-SU-2025:15957</ID>
    </Identification>
    <Status>Final</Status>
    <Version>1</Version>
    <RevisionHistory>
      <Revision>
        <Number>1</Number>
        <Date>2025-03-15T00:00:00Z</Date>
        <Description>current</Description>
      </Revision>
    </RevisionHistory>
    <InitialReleaseDate>2025-03-15T00:00:00Z</InitialReleaseDate>
    <CurrentReleaseDate>2025-03-15T00:00:00Z</CurrentReleaseDate>
    <Generator>
      <Engine>cve-database/bin/generate-cvrf.pl</Engine>
      <Date>2017-02-24T01:00:00Z</Date>
    </Generator>
  </DocumentTracking>
  <DocumentNotes>
    <Note Title="Topic" Type="Summary" Ordinal="1" xml:lang="en">php8-8.3.19-1.1 on GA media</Note>
    <Note Title="Details" Type="General" Ordinal="2" xml:lang="en">These are all security issues fixed in the php8-8.3.19-1.1 package on the GA media of openSUSE Tumbleweed.</Note>
    <Note Title="Terms of Use" Type="Legal Disclaimer" Ordinal="3" xml:lang="en">The CVRF data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).</Note>
    <Note Title="Patchnames" Type="Details" Ordinal="4" xml:lang="en">openSUSE-Tumbleweed-2025-15957</Note>
  </DocumentNotes>
  <DocumentDistribution xml:lang="en">Copyright SUSE LLC under the Creative Commons License 4.0 with Attribution (CC-BY-4.0)</DocumentDistribution>
  <DocumentReferences>
    <Reference Type="Self">
      <URL>https://www.suse.com/support/security/rating/</URL>
      <Description>SUSE Security Ratings</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2024-11235/</URL>
      <Description>SUSE CVE CVE-2024-11235 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2025-1217/</URL>
      <Description>SUSE CVE CVE-2025-1217 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2025-1219/</URL>
      <Description>SUSE CVE CVE-2025-1219 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2025-1734/</URL>
      <Description>SUSE CVE CVE-2025-1734 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2025-1736/</URL>
      <Description>SUSE CVE CVE-2025-1736 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2025-1861/</URL>
      <Description>SUSE CVE CVE-2025-1861 page</Description>
    </Reference>
  </DocumentReferences>
  <ProductTree xmlns="http://www.icasi.org/CVRF/schema/prod/1.1">
    <Branch Type="Product Family" Name="openSUSE Tumbleweed">
      <Branch Type="Product Name" Name="openSUSE Tumbleweed">
        <FullProductName ProductID="openSUSE Tumbleweed" CPE="cpe:/o:opensuse:tumbleweed">openSUSE Tumbleweed</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Version" Name="php8-8.3.19-1.1">
      <FullProductName ProductID="php8-8.3.19-1.1">php8-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-bcmath-8.3.19-1.1">
      <FullProductName ProductID="php8-bcmath-8.3.19-1.1">php8-bcmath-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-bz2-8.3.19-1.1">
      <FullProductName ProductID="php8-bz2-8.3.19-1.1">php8-bz2-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-calendar-8.3.19-1.1">
      <FullProductName ProductID="php8-calendar-8.3.19-1.1">php8-calendar-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-cli-8.3.19-1.1">
      <FullProductName ProductID="php8-cli-8.3.19-1.1">php8-cli-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-ctype-8.3.19-1.1">
      <FullProductName ProductID="php8-ctype-8.3.19-1.1">php8-ctype-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-curl-8.3.19-1.1">
      <FullProductName ProductID="php8-curl-8.3.19-1.1">php8-curl-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-dba-8.3.19-1.1">
      <FullProductName ProductID="php8-dba-8.3.19-1.1">php8-dba-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-devel-8.3.19-1.1">
      <FullProductName ProductID="php8-devel-8.3.19-1.1">php8-devel-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-dom-8.3.19-1.1">
      <FullProductName ProductID="php8-dom-8.3.19-1.1">php8-dom-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-enchant-8.3.19-1.1">
      <FullProductName ProductID="php8-enchant-8.3.19-1.1">php8-enchant-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-exif-8.3.19-1.1">
      <FullProductName ProductID="php8-exif-8.3.19-1.1">php8-exif-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-ffi-8.3.19-1.1">
      <FullProductName ProductID="php8-ffi-8.3.19-1.1">php8-ffi-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-fileinfo-8.3.19-1.1">
      <FullProductName ProductID="php8-fileinfo-8.3.19-1.1">php8-fileinfo-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-ftp-8.3.19-1.1">
      <FullProductName ProductID="php8-ftp-8.3.19-1.1">php8-ftp-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-gd-8.3.19-1.1">
      <FullProductName ProductID="php8-gd-8.3.19-1.1">php8-gd-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-gettext-8.3.19-1.1">
      <FullProductName ProductID="php8-gettext-8.3.19-1.1">php8-gettext-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-gmp-8.3.19-1.1">
      <FullProductName ProductID="php8-gmp-8.3.19-1.1">php8-gmp-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-iconv-8.3.19-1.1">
      <FullProductName ProductID="php8-iconv-8.3.19-1.1">php8-iconv-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-intl-8.3.19-1.1">
      <FullProductName ProductID="php8-intl-8.3.19-1.1">php8-intl-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-ldap-8.3.19-1.1">
      <FullProductName ProductID="php8-ldap-8.3.19-1.1">php8-ldap-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-mbstring-8.3.19-1.1">
      <FullProductName ProductID="php8-mbstring-8.3.19-1.1">php8-mbstring-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-mysql-8.3.19-1.1">
      <FullProductName ProductID="php8-mysql-8.3.19-1.1">php8-mysql-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-odbc-8.3.19-1.1">
      <FullProductName ProductID="php8-odbc-8.3.19-1.1">php8-odbc-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-opcache-8.3.19-1.1">
      <FullProductName ProductID="php8-opcache-8.3.19-1.1">php8-opcache-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-openssl-8.3.19-1.1">
      <FullProductName ProductID="php8-openssl-8.3.19-1.1">php8-openssl-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-pcntl-8.3.19-1.1">
      <FullProductName ProductID="php8-pcntl-8.3.19-1.1">php8-pcntl-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-pdo-8.3.19-1.1">
      <FullProductName ProductID="php8-pdo-8.3.19-1.1">php8-pdo-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-pgsql-8.3.19-1.1">
      <FullProductName ProductID="php8-pgsql-8.3.19-1.1">php8-pgsql-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-phar-8.3.19-1.1">
      <FullProductName ProductID="php8-phar-8.3.19-1.1">php8-phar-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-posix-8.3.19-1.1">
      <FullProductName ProductID="php8-posix-8.3.19-1.1">php8-posix-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-readline-8.3.19-1.1">
      <FullProductName ProductID="php8-readline-8.3.19-1.1">php8-readline-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-shmop-8.3.19-1.1">
      <FullProductName ProductID="php8-shmop-8.3.19-1.1">php8-shmop-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-snmp-8.3.19-1.1">
      <FullProductName ProductID="php8-snmp-8.3.19-1.1">php8-snmp-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-soap-8.3.19-1.1">
      <FullProductName ProductID="php8-soap-8.3.19-1.1">php8-soap-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-sockets-8.3.19-1.1">
      <FullProductName ProductID="php8-sockets-8.3.19-1.1">php8-sockets-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-sodium-8.3.19-1.1">
      <FullProductName ProductID="php8-sodium-8.3.19-1.1">php8-sodium-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-sqlite-8.3.19-1.1">
      <FullProductName ProductID="php8-sqlite-8.3.19-1.1">php8-sqlite-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-sysvmsg-8.3.19-1.1">
      <FullProductName ProductID="php8-sysvmsg-8.3.19-1.1">php8-sysvmsg-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-sysvsem-8.3.19-1.1">
      <FullProductName ProductID="php8-sysvsem-8.3.19-1.1">php8-sysvsem-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-sysvshm-8.3.19-1.1">
      <FullProductName ProductID="php8-sysvshm-8.3.19-1.1">php8-sysvshm-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-tidy-8.3.19-1.1">
      <FullProductName ProductID="php8-tidy-8.3.19-1.1">php8-tidy-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-tokenizer-8.3.19-1.1">
      <FullProductName ProductID="php8-tokenizer-8.3.19-1.1">php8-tokenizer-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-xmlreader-8.3.19-1.1">
      <FullProductName ProductID="php8-xmlreader-8.3.19-1.1">php8-xmlreader-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-xmlwriter-8.3.19-1.1">
      <FullProductName ProductID="php8-xmlwriter-8.3.19-1.1">php8-xmlwriter-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-xsl-8.3.19-1.1">
      <FullProductName ProductID="php8-xsl-8.3.19-1.1">php8-xsl-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-zip-8.3.19-1.1">
      <FullProductName ProductID="php8-zip-8.3.19-1.1">php8-zip-8.3.19-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="php8-zlib-8.3.19-1.1">
      <FullProductName ProductID="php8-zlib-8.3.19-1.1">php8-zlib-8.3.19-1.1</FullProductName>
    </Branch>
    <Relationship ProductReference="php8-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-8.3.19-1.1">php8-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-bcmath-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-bcmath-8.3.19-1.1">php8-bcmath-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-bz2-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-bz2-8.3.19-1.1">php8-bz2-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-calendar-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-calendar-8.3.19-1.1">php8-calendar-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-cli-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-cli-8.3.19-1.1">php8-cli-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-ctype-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-ctype-8.3.19-1.1">php8-ctype-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-curl-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-curl-8.3.19-1.1">php8-curl-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-dba-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-dba-8.3.19-1.1">php8-dba-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-devel-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-devel-8.3.19-1.1">php8-devel-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-dom-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-dom-8.3.19-1.1">php8-dom-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-enchant-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-enchant-8.3.19-1.1">php8-enchant-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-exif-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-exif-8.3.19-1.1">php8-exif-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-ffi-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-ffi-8.3.19-1.1">php8-ffi-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-fileinfo-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-fileinfo-8.3.19-1.1">php8-fileinfo-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-ftp-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-ftp-8.3.19-1.1">php8-ftp-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-gd-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-gd-8.3.19-1.1">php8-gd-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-gettext-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-gettext-8.3.19-1.1">php8-gettext-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-gmp-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-gmp-8.3.19-1.1">php8-gmp-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-iconv-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-iconv-8.3.19-1.1">php8-iconv-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-intl-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-intl-8.3.19-1.1">php8-intl-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-ldap-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-ldap-8.3.19-1.1">php8-ldap-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-mbstring-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-mbstring-8.3.19-1.1">php8-mbstring-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-mysql-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-mysql-8.3.19-1.1">php8-mysql-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-odbc-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-odbc-8.3.19-1.1">php8-odbc-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-opcache-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-opcache-8.3.19-1.1">php8-opcache-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-openssl-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-openssl-8.3.19-1.1">php8-openssl-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-pcntl-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-pcntl-8.3.19-1.1">php8-pcntl-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-pdo-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-pdo-8.3.19-1.1">php8-pdo-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-pgsql-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-pgsql-8.3.19-1.1">php8-pgsql-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-phar-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-phar-8.3.19-1.1">php8-phar-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-posix-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-posix-8.3.19-1.1">php8-posix-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-readline-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-readline-8.3.19-1.1">php8-readline-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-shmop-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-shmop-8.3.19-1.1">php8-shmop-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-snmp-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-snmp-8.3.19-1.1">php8-snmp-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-soap-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-soap-8.3.19-1.1">php8-soap-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-sockets-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-sockets-8.3.19-1.1">php8-sockets-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-sodium-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-sodium-8.3.19-1.1">php8-sodium-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-sqlite-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-sqlite-8.3.19-1.1">php8-sqlite-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-sysvmsg-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-sysvmsg-8.3.19-1.1">php8-sysvmsg-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-sysvsem-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-sysvsem-8.3.19-1.1">php8-sysvsem-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-sysvshm-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-sysvshm-8.3.19-1.1">php8-sysvshm-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-tidy-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-tidy-8.3.19-1.1">php8-tidy-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-tokenizer-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-tokenizer-8.3.19-1.1">php8-tokenizer-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-xmlreader-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-xmlreader-8.3.19-1.1">php8-xmlreader-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-xmlwriter-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-xmlwriter-8.3.19-1.1">php8-xmlwriter-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-xsl-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-xsl-8.3.19-1.1">php8-xsl-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-zip-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-zip-8.3.19-1.1">php8-zip-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="php8-zlib-8.3.19-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:php8-zlib-8.3.19-1.1">php8-zlib-8.3.19-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
  </ProductTree>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="1">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">In PHP versions 8.3.* before 8.3.19 and 8.4.* before 8.4.5, a code sequence involving __set handler or ??=    operator and exceptions can lead to a use-after-free vulnerability. If the third party can control the memory layout leading to this, for example by supplying specially crafted inputs to the script, it could lead to remote code execution.</Note>
    </Notes>
    <CVE>CVE-2024-11235</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:php8-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-bcmath-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-bz2-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-calendar-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-cli-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ctype-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-curl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-dba-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-devel-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-dom-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-enchant-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-exif-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ffi-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-fileinfo-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ftp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gd-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gettext-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gmp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-iconv-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-intl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ldap-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-mbstring-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-mysql-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-odbc-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-opcache-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-openssl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pcntl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pdo-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pgsql-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-phar-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-posix-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-readline-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-shmop-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-snmp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-soap-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sockets-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sodium-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sqlite-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvmsg-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvsem-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvshm-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-tidy-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-tokenizer-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xmlreader-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xmlwriter-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xsl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-zip-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-zlib-8.3.19-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2024-11235.html</URL>
        <Description>CVE-2024-11235</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1239666</URL>
        <Description>SUSE Bug 1239666</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="2">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when http request module parses HTTP response obtained from a server, folded headers are parsed incorrectly, which may lead to misinterpreting the response and using incorrect headers, MIME types, etc.</Note>
    </Notes>
    <CVE>CVE-2025-1217</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:php8-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-bcmath-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-bz2-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-calendar-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-cli-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ctype-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-curl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-dba-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-devel-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-dom-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-enchant-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-exif-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ffi-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-fileinfo-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ftp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gd-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gettext-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gmp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-iconv-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-intl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ldap-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-mbstring-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-mysql-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-odbc-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-opcache-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-openssl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pcntl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pdo-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pgsql-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-phar-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-posix-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-readline-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-shmop-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-snmp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-soap-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sockets-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sodium-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sqlite-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvmsg-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvsem-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvshm-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-tidy-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-tokenizer-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xmlreader-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xmlwriter-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xsl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-zip-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-zlib-8.3.19-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2025-1217.html</URL>
        <Description>CVE-2025-1217</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1239664</URL>
        <Description>SUSE Bug 1239664</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="3">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when requesting a HTTP resource using the DOM or SimpleXML extensions, the wrong content-type  header is used to determine the charset when the requested resource performs a redirect. This may cause the resulting document to be parsed incorrectly or bypass validations.</Note>
    </Notes>
    <CVE>CVE-2025-1219</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:php8-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-bcmath-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-bz2-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-calendar-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-cli-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ctype-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-curl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-dba-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-devel-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-dom-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-enchant-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-exif-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ffi-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-fileinfo-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ftp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gd-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gettext-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gmp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-iconv-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-intl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ldap-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-mbstring-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-mysql-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-odbc-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-opcache-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-openssl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pcntl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pdo-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pgsql-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-phar-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-posix-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-readline-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-shmop-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-snmp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-soap-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sockets-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sodium-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sqlite-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvmsg-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvsem-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvshm-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-tidy-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-tokenizer-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xmlreader-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xmlwriter-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xsl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-zip-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-zlib-8.3.19-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2025-1219.html</URL>
        <Description>CVE-2025-1219</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1239667</URL>
        <Description>SUSE Bug 1239667</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="4">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when receiving headers from HTTP server, the headers missing a colon (:) are treated as valid headers even though they are not. This may confuse applications into accepting invalid headers.</Note>
    </Notes>
    <CVE>CVE-2025-1734</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:php8-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-bcmath-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-bz2-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-calendar-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-cli-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ctype-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-curl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-dba-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-devel-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-dom-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-enchant-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-exif-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ffi-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-fileinfo-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ftp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gd-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gettext-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gmp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-iconv-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-intl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ldap-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-mbstring-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-mysql-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-odbc-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-opcache-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-openssl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pcntl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pdo-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pgsql-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-phar-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-posix-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-readline-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-shmop-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-snmp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-soap-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sockets-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sodium-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sqlite-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvmsg-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvsem-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvshm-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-tidy-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-tokenizer-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xmlreader-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xmlwriter-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xsl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-zip-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-zlib-8.3.19-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2025-1734.html</URL>
        <Description>CVE-2025-1734</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1239668</URL>
        <Description>SUSE Bug 1239668</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="5">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when user-supplied headers are sent, the insufficient validation of the end-of-line characters may prevent certain headers from being sent or lead to certain headers be misinterpreted.</Note>
    </Notes>
    <CVE>CVE-2025-1736</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:php8-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-bcmath-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-bz2-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-calendar-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-cli-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ctype-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-curl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-dba-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-devel-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-dom-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-enchant-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-exif-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ffi-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-fileinfo-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ftp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gd-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gettext-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gmp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-iconv-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-intl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ldap-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-mbstring-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-mysql-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-odbc-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-opcache-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-openssl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pcntl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pdo-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pgsql-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-phar-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-posix-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-readline-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-shmop-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-snmp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-soap-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sockets-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sodium-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sqlite-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvmsg-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvsem-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvshm-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-tidy-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-tokenizer-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xmlreader-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xmlwriter-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xsl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-zip-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-zlib-8.3.19-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2025-1736.html</URL>
        <Description>CVE-2025-1736</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1239670</URL>
        <Description>SUSE Bug 1239670</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="6">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when parsing HTTP redirect in the response to an HTTP request, there is currently limit on the location value size caused by limited size of the location buffer to 1024. However as per RFC9110, the limit is recommended to be 8000. This may lead to incorrect URL truncation and redirecting to a wrong location.</Note>
    </Notes>
    <CVE>CVE-2025-1861</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:php8-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-bcmath-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-bz2-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-calendar-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-cli-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ctype-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-curl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-dba-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-devel-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-dom-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-enchant-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-exif-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ffi-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-fileinfo-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ftp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gd-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gettext-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-gmp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-iconv-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-intl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-ldap-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-mbstring-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-mysql-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-odbc-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-opcache-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-openssl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pcntl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pdo-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-pgsql-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-phar-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-posix-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-readline-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-shmop-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-snmp-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-soap-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sockets-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sodium-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sqlite-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvmsg-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvsem-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-sysvshm-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-tidy-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-tokenizer-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xmlreader-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xmlwriter-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-xsl-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-zip-8.3.19-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:php8-zlib-8.3.19-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2025-1861.html</URL>
        <Description>CVE-2025-1861</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1239669</URL>
        <Description>SUSE Bug 1239669</Description>
      </Reference>
    </References>
  </Vulnerability>
</cvrfdoc>
