
Debian LTS: DLA-3458-1: php7.3 security update
Niels Dossche and Tim D'¼sterhus discovered that PHP's implementation of the SOAP HTTP Digest authentication did not check for failures, which may result in a stack information leak. Furthermore, the code used an insufficient number of random bytes.