ELSA-2018-1932

ELSA-2018-1932 - zsh security update

Type:SECURITY
Impact:MODERATE
Release Date:2018-06-25

Description


[4.3.11-8]
- fix defects detected by Coverity related to CVE-2017-18206 and CVE-2018-1083

[4.3.11-7]
- fix stack-based buffer overflow in utils.c:checkmailpath() (CVE-2018-1100)
- fix stack-based buffer overflow in gen_matches_files() (CVE-2018-1083)
- fix buffer overrun in xsymlinks (CVE-2017-18206)
- fix buffer overflow when scanning very long path for symlinks (CVE-2014-10072)

[4.3.11-6]
- signal-handling related fixes collected from upstream (#1311166)

[4.3.11-5]
- fix malloc() signal leak in lexsave() (#1267903)


Related CVEs


CVE-2018-1083
CVE-2014-10072
CVE-2017-18206
CVE-2018-1100

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 6 (i386) zsh-4.3.11-8.el6.src.rpm398ef822fc0f22c3f601d8ef2fb8685f62384dff761ae4a24696a995ad9a222aELSA-2020-0892ol6_i386_latest
zsh-4.3.11-8.el6.src.rpm398ef822fc0f22c3f601d8ef2fb8685f62384dff761ae4a24696a995ad9a222aELSA-2020-0892ol6_u10_i386_base
zsh-4.3.11-8.el6.i686.rpme973a6b1e168687c519ef4df36aede136a1a5c9b6c03cfd048b31e1b2b4ba101ELSA-2020-0892ol6_i386_latest
zsh-4.3.11-8.el6.i686.rpme973a6b1e168687c519ef4df36aede136a1a5c9b6c03cfd048b31e1b2b4ba101ELSA-2020-0892ol6_u10_i386_base
zsh-html-4.3.11-8.el6.i686.rpmac4d45785124229646438bc410f02062ff005b71f82136c48cbb1df259135fb4ELBA-2018-2897ol6_i386_latest
zsh-html-4.3.11-8.el6.i686.rpmac4d45785124229646438bc410f02062ff005b71f82136c48cbb1df259135fb4ELBA-2018-2897ol6_u10_i386_base
Oracle Linux 6 (x86_64) zsh-4.3.11-8.el6.src.rpm398ef822fc0f22c3f601d8ef2fb8685f62384dff761ae4a24696a995ad9a222aELSA-2020-0892ol6_u10_x86_64_base
zsh-4.3.11-8.el6.src.rpm398ef822fc0f22c3f601d8ef2fb8685f62384dff761ae4a24696a995ad9a222aELSA-2020-0892ol6_x86_64_latest
zsh-4.3.11-8.el6.x86_64.rpmae94c76e1ba94a1f50dc3377ff4831f4eda3cf3d6c043034146863aecd0333a7ELSA-2020-0892ol6_u10_x86_64_base
zsh-4.3.11-8.el6.x86_64.rpmae94c76e1ba94a1f50dc3377ff4831f4eda3cf3d6c043034146863aecd0333a7ELSA-2020-0892ol6_x86_64_latest
zsh-html-4.3.11-8.el6.x86_64.rpm2ed14f196f30be476537fc5b1cd5af3205ae1222e9723b1b8da4d87036a6b810ELBA-2018-2897ol6_u10_x86_64_base
zsh-html-4.3.11-8.el6.x86_64.rpm2ed14f196f30be476537fc5b1cd5af3205ae1222e9723b1b8da4d87036a6b810ELBA-2018-2897ol6_x86_64_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete