[CLSA-2022:1648567648] Fix of CVE: CVE-2021-45444
Type:
security
Severity:
moderate
Release date:
2022-03-29
Description:
- CVE-2021-45444: do not expand PROMPT_SUBST within argument of prompt-expansion sequences such as file.file to avoid arbitrary code execution
Updated packages:
  • zsh-html-5.5.1-6.el8.2.tuxcare.els1.noarch.rpm
    sha:d0f27f0bbc401d84f8acc1323afee436f36f9d7f
  • zsh-5.5.1-6.el8.2.tuxcare.els1.x86_64.rpm
    sha:541de284c5ad9582dbf6f5dc554c93e2882c0637
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.