gzip-1.9-13.el8
エラータID: AXSA:2022-3155:01
Release date:
Tuesday, April 26, 2022 - 20:50
Subject:
gzip-1.9-13.el8
Affected Channels:
Asianux Server 8 for x86_64
Severity:
High
Description:
The gzip packages contain the gzip (GNU zip) data compression utility. gzip is
used to compress regular files. It replaces them with files containing the .gz
extension, while retaining ownership modes, access, and modification times.
Security Fix(es):
gzip: arbitrary-file-write vulnerability (CVE-2022-1271)
For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s)
listed in the References section.
Solution:
Update packages.
CVEs:
CVE-2022-1271
** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.
** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.
Additional Info:
N/A
Download:
SRPMS
- gzip-1.9-13.el8.src.rpm
MD5: 3ed8526b142e5d796930bc948abf9279
SHA-256: 68816c5110bd444f89710f91cdd0e0e48a433cc962f945048e3114431387b5e7
Size: 801.66 kB
Asianux Server 8 for x86_64
- gzip-1.9-13.el8.x86_64.rpm
MD5: 850609c91c146453af9151ed9444e7e8
SHA-256: e86f218978c8f484a5a058c02d15f3482cf786d8744bbb445eb5ede913db18f9
Size: 165.73 kB