SUSE-SU-2022:0161-1
Dashboard / Vulnerabilities / SUSE-SU-2022:0161-1
SUSE-SU-2022:0161-1
Summary: Security update for zsh
Details: This update for zsh fixes the following issues: - CVE-2018-0502: Fixed execve call vulnerability to program named on the second line when the beginning of a #! script file was mishandled. (bsc#1107296, bsc#1107294) - CVE-2018-13259: Fixed execve call vulnerability to program name that is a substring of the intended one. (bsc#1107296, bsc#1107294)
References: https://www.suse.com/support/update/announcement/2022/suse-su-20220161-1/, https://bugzilla.suse.com/1107294, https://bugzilla.suse.com/1107296, https://www.suse.com/security/cve/CVE-2018-0502, https://www.suse.com/security/cve/CVE-2018-13259
Affected packages
Package
Name: zsh
Purl: pkg:rpm/suse/zsh&distro=HPE%20Helion%20OpenStack%208
Affected ranges
Type: ECOSYSTEM
Events:
