[CLSA-2024:1731337736] bzip2: Fix of CVE-2019-12900
Type:
security
Severity:
Critical
Release date:
2024-11-11 15:35:08 UTC
Description:
- CVE-2019-12900: accept as many selectors as the file format allows but ignore any larger than the theoretical maximum, BZ_MAX_SELECTORS
Updated packages:
  • bzip2-1.0.6-26.el8.tuxcare.els1.x86_64.rpm
    sha:4a7f74c5e6a50eda7105094e6cb24c2d0394872c8a1319310db318b0fc737dfc
  • bzip2-devel-1.0.6-26.el8.tuxcare.els1.i686.rpm
    sha:098d481de657dd006bac3b19970e3a52f92189c91678dc8a2c6ab7089fd83c98
  • bzip2-devel-1.0.6-26.el8.tuxcare.els1.x86_64.rpm
    sha:5c1b9d9d7ab170242b4d9bffd4fc9501a5869c31b99bcbd0f8dc1681a159a648
  • bzip2-libs-1.0.6-26.el8.tuxcare.els1.i686.rpm
    sha:9e4f9d44861c19604a673959f417853ce7c4d7ef5a51da52c4990e3144ec7358
  • bzip2-libs-1.0.6-26.el8.tuxcare.els1.x86_64.rpm
    sha:a288cc16c47d7dc8851b3b97dd9b6dca60048112aa6808282167546448e08db5
  • bzip2-static-1.0.6-26.el8.tuxcare.els1.x86_64.rpm
    sha:fca02565e9bbeb0c0a0ec237b7f693253a6504a553125b05b80cec4bbddc0f62
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.