SUSE-SU-2022:1250-1
Dashboard / Vulnerabilities / SUSE-SU-2022:1250-1
SUSE-SU-2022:1250-1
Summary: Security update for gzip
Details: This update for gzip fixes the following issues: - CVE-2022-1271: Fixed an incorrect escaping of malicious filenames (ZDI-CAN-16587). (bsc#1198062) The following non-security bugs were fixed: - Fixed an issue when 'gzexe' counts the lines to skip wrong. (bsc#1180713) - Fixed a potential segfault when zlib acceleration is enabled (bsc#1177047)
References: https://www.suse.com/support/update/announcement/2022/suse-su-20221250-1/, https://bugzilla.suse.com/1177047, https://bugzilla.suse.com/1180713, https://bugzilla.suse.com/1198062, https://www.suse.com/security/cve/CVE-2022-1271
Affected packages
Package
Name: gzip
Purl: pkg:rpm/suse/gzip&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-ESPOS
Affected ranges
Type: ECOSYSTEM
Events:
