[CLSA-2023:1698179235] Fix CVE(s): CVE-2023-45853
Type:
security
Severity:
Critical
Release date:
2023-10-24 20:27:20 UTC
Description:
* SECURITY UPDATE: Reject overflows of zip header fields in minizip - debian/patches/CVE-2023-45853.patch: Check length of comment, filename and extra field in zipOpenNewFileInZip4_64 - CVE-2023-45853
Updated packages:
  • lib32z1_1.2.11.dfsg-0ubuntu2.2+tuxcare.els1_amd64.deb
    sha:3750ed254448ae3eab7092a2c2b230d2ed8e6c34
  • lib32z1-dev_1.2.11.dfsg-0ubuntu2.2+tuxcare.els1_amd64.deb
    sha:e24965a879e3cddcabc40e203db6689da86b3b0a
  • libx32z1_1.2.11.dfsg-0ubuntu2.2+tuxcare.els1_amd64.deb
    sha:3c7dddd8d0c6c23d026f83d04cc6b6f1870ac07b
  • libx32z1-dev_1.2.11.dfsg-0ubuntu2.2+tuxcare.els1_amd64.deb
    sha:52893753e2ec69bd210a1aca8bcb7359eac76dff
  • zlib1g_1.2.11.dfsg-0ubuntu2.2+tuxcare.els1_amd64.deb
    sha:9bebcf36c7b98355507917a20c8ffa6642201404
  • zlib1g-dev_1.2.11.dfsg-0ubuntu2.2+tuxcare.els1_amd64.deb
    sha:3379bf62975ee19fe64ed04d77f264e7f2db1202
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.