[CLSA-2025:1760024944] Fix CVE(s): CVE-2025-6297
Type:
security
Severity:
Low
Release date:
2025-10-09 15:49:08 UTC
Description:
* SECURITY UPDATE: Fix directory cleanup vulnerability - dpkg-deb/info.c: Fix cleanup for control member with restricted directories - Add treewalk to set proper permissions before removal for non-root users - CVE-2025-6297
Updated packages:
  • dpkg_1.19.0.5ubuntu2.4+tuxcare.els1_amd64.deb
    sha:800d6c6b9dfcc06323070e7e79d7816a1ddacf14
  • dpkg-dev_1.19.0.5ubuntu2.4+tuxcare.els1_all.deb
    sha:f0dae26e885862e3dd358eadb7452c6627f3b208
  • dselect_1.19.0.5ubuntu2.4+tuxcare.els1_amd64.deb
    sha:cde32c13cbbd2c189b66f563556a659410d786ab
  • libdpkg-dev_1.19.0.5ubuntu2.4+tuxcare.els1_amd64.deb
    sha:6e5d6fef6403a3efb7b7fd0dc046a47166236c19
  • libdpkg-perl_1.19.0.5ubuntu2.4+tuxcare.els1_all.deb
    sha:5784a365711b2d2e0133394375fbf10ce7cd3d68
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.