It was discovered that OpenDMARC, a milter implementation of DMARC, isprone to a signature-bypass vulnerability with multiple From: addresses.
More info:
https://www.debian.org/security/2019/dsa-4526
Daniel McCarney discovered that the BIRD internet routing daemonincorrectly validated RFC 8203 messages in its BGP daemon, resultingin a stack buffer overflow.
More info:
https://www.debian.org/security/2019/dsa-4528
Multiple security issues were found in PHP, a widely-used open sourcegeneral purpose scripting language: Missing sanitising in the EXIFextension and the iconv_mime_decode_headers() function could result ininformation disclosure or denial of service.
More info:
https://www.debian.org/security/2019/dsa-4527