Oval Definition:oval:org.opensuse.security:def:99493
Revision Date:2022-03-04Version:1
Title: (Important)
Description:

This update for zsh fixes the following issues:

- CVE-2021-45444: Fixed a vulnerability where arbitrary shell commands could be executed related to prompt expansion (bsc#1196435). - CVE-2019-20044: Fixed a vulnerability where shell privileges would not be properly dropped when unsetting the PRIVILEGED option (bsc#1163882).
Family:unixClass:patch
Status:Reference(s):1163882
1183578
1183579
1186151
1196435
CVE-2019-20044
CVE-2021-28210
CVE-2021-28211
CVE-2021-45444
SUSE-SU-2021:2161-1
Platform(s):Image SLES15-SP3-Manager-4-2-Proxy-BYOS-EC2-HVM
SUSE Linux Enterprise Server 15 SP1-LTSS
Product(s):
Definition Synopsis
  • Image SLES15-SP3-Manager-4-2-Proxy-BYOS-EC2-HVM is installed
  • AND zsh-5.6-7.5.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15 SP1-LTSS is installed
  • AND Package Information
  • ovmf-2017+git1510945757.b2662641d5-5.43.1 is installed
  • OR ovmf-tools-2017+git1510945757.b2662641d5-5.43.1 is installed
  • OR qemu-ovmf-x86_64-2017+git1510945757.b2662641d5-5.43.1 is installed
  • OR qemu-uefi-aarch64-2017+git1510945757.b2662641d5-5.43.1 is installed
  • BACK