ELSA-2022-2120

ELSA-2022-2120 - zsh security update

Type:SECURITY
Severity:MODERATE
Release Date:2022-05-17

Description


[5.5.1-9]
- do not perform PROMPT_SUBST evaluation on file.file/%K arguments (CVE-2021-45444)

[5.5.1-8]
- improve printing of error messages introduced by the fix of CVE-2019-20044

[5.5.1-7]
- drop privileges securely when unsetting PRIVILEGED option (CVE-2019-20044)


Related CVEs


CVE-2021-45444

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) zsh-5.5.1-9.el8.src.rpm37051f4631358d767028850339cd9480-
zsh-5.5.1-9.el8.aarch64.rpmd692db0e82387f31468a38eda4858829-
zsh-html-5.5.1-9.el8.noarch.rpmcde958bd0f49697e6c78f4a2e1398bb1-
Oracle Linux 8 (x86_64) zsh-5.5.1-9.el8.src.rpm37051f4631358d767028850339cd9480-
zsh-5.5.1-9.el8.x86_64.rpme64ae3c9a12a4656b703aad8d7a92fc7-
zsh-html-5.5.1-9.el8.noarch.rpmcde958bd0f49697e6c78f4a2e1398bb1-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete