In PHP versions 8.1.* before 8.1.31, 8.2.* before 8.2.26, 8.3.* before 8.3.14, a hostile MySQL server can cause the client to disclose the content of its heap containing data from other SQL requests and possible other data belonging to different users of the same server.
Is there a status update as to when this will be patched for, or PHP moved to 8.1.31, please?
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:4263 https://access.redhat.com/errata/RHSA-2025:4263
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:7315 https://access.redhat.com/errata/RHSA-2025:7315
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:7432 https://access.redhat.com/errata/RHSA-2025:7432