[CLSA-2023:1698179598] Fix CVE(s): CVE-2023-45853
Type:
security
Severity:
Critical
Release date:
2023-10-24 20:33:23 UTC
Description:
* SECURITY UPDATE: Reject overflows of zip header fields in minizip - debian/patches/CVE-2023-45853.patch: Check length of comment, filename and extra field in zipOpenNewFileInZip4_64 - CVE-2023-45853
Updated packages:
  • lib32z1_1.2.8.dfsg-2ubuntu4.3+tuxcare.els3_amd64.deb
    sha:ee50ec78f0ad8b5c90b5628ce544dff097ee3b45
  • lib32z1-dev_1.2.8.dfsg-2ubuntu4.3+tuxcare.els3_amd64.deb
    sha:9bebd9e79889b1604fcb09813c3f36120480d389
  • libx32z1_1.2.8.dfsg-2ubuntu4.3+tuxcare.els3_amd64.deb
    sha:e7b43ee3805878fb006f985f3d3507d3b21d144b
  • libx32z1-dev_1.2.8.dfsg-2ubuntu4.3+tuxcare.els3_amd64.deb
    sha:b01eb6863ebdae863ff9a62ed8c92947900dde80
  • zlib1g_1.2.8.dfsg-2ubuntu4.3+tuxcare.els3_amd64.deb
    sha:45ee38af2ddb2fc51aa34b407077ca8aecbf5d41
  • zlib1g-dev_1.2.8.dfsg-2ubuntu4.3+tuxcare.els3_amd64.deb
    sha:2fee51a6865027672bfdad1b10ef5cc1ca27ce94
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.