Oval Definition:oval:org.opensuse.security:def:109935
Revision Date:2019-08-12Version:1
Title:Security update for zstd (Moderate)
Description:

This update for zstd to version 1.4.2 fixes the following issues:

Security issues fixed: - CVE-2019-11922: Fixed race condition in one-pass compression functions that could allow out of bounds write (boo#1142941).

Non-security issues fixed: - Added --[no-]compress-literals CLI flag to enable or disable literal compression. - Added new --rsyncable mode. - Added handling of -f flag to zstdgrep. - Added CPU load indicator for each file on -vv mode. - Changed --no-progress flag to preserve the final summary. - Added new command --adapt for compressed network piping of data adjusted to the perceived network conditions.
Family:unixClass:patch
Status:Reference(s):1082318
1133297
1142941
CVE-2019-11922
openSUSE-SU-2019:1845-1
Platform(s):openSUSE Leap 15.1
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libzstd-devel-1.4.2-lp151.3.3.1 is installed
  • OR libzstd-devel-static-1.4.2-lp151.3.3.1 is installed
  • OR libzstd1-1.4.2-lp151.3.3.1 is installed
  • OR libzstd1-32bit-1.4.2-lp151.3.3.1 is installed
  • OR zstd-1.4.2-lp151.3.3.1 is installed
  • BACK