[CLSA-2024:1731341386] bzip2: Fix of CVE-2019-12900
Type:
security
Severity:
Critical
Release date:
2024-11-11 16:09:53 UTC
Description:
- CVE-2019-12900: accept as many selectors as the file format allows but ignore any larger than the theoretical maximum, BZ_MAX_SELECTORS
Updated packages:
  • bzip2-1.0.6-26.el8.tuxcare.els1.x86_64.rpm
    sha:d11eb7f9420b8c8a5815d1a04e5109b82d627b889b3f172bd42ca2c36054f8c3
  • bzip2-devel-1.0.6-26.el8.tuxcare.els1.i686.rpm
    sha:d2a060ee7a72260699ce9def5cfe0c6b7a1b6b4de4882a12af8908bf78f7648a
  • bzip2-devel-1.0.6-26.el8.tuxcare.els1.x86_64.rpm
    sha:d3b0e45c9de2470f3d4c8d95b61ecd914a82f56c56a4e13c7e9c9b80a72e02e9
  • bzip2-libs-1.0.6-26.el8.tuxcare.els1.i686.rpm
    sha:1099cca6d9b014226a5c702a35034764d7fe9efac4a0612aa9c2be34f79aeeac
  • bzip2-libs-1.0.6-26.el8.tuxcare.els1.x86_64.rpm
    sha:d58544fd547846fa2c6692f5114af425994143a8816e304f18d50831239159fe
  • bzip2-static-1.0.6-26.el8.tuxcare.els1.x86_64.rpm
    sha:d20ca13fade79781c3da655ec22698dd246db816bd76d78d6cada5eb7b0a93ab
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.