Oval Definition:oval:org.opensuse.security:def:125811
Revision Date:2022-03-04Version:1
Title:Security update for zsh (Important)
Description:

This update for zsh fixes the following issues:

- CVE-2021-45444: Fixed a vulnerability where arbitrary shell commands could be executed related to prompt expansion (bsc#1196435). - CVE-2019-20044: Fixed a vulnerability where shell privileges would not be properly dropped when unsetting the PRIVILEGED option (bsc#1163882). - CVE-2018-1100: Fixed a potential code execution via a stack-based buffer overflow in utils.c:checkmailpath() (bsc#1089030).
Family:unixClass:patch
Status:Reference(s):1089030
1163882
1196435
CVE-2018-1100
CVE-2019-20044
CVE-2021-45444
SUSE-SU-2022:0733-1
Platform(s):SUSE Linux Enterprise Server for SAP Applications 12 SP4
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
  • AND zsh-5.0.5-6.19.1 is installed
  • BACK