UbuntuUpdates.org

Bugs fixes in "zsh"

Origin Bug number Title Date fixed
CVE CVE-2018-7549 In params.c in zsh through 5.4.2, there is a crash during a copy of an empty hash table, as demonstrated by typeset -p. 2018-03-08
CVE CVE-2017-18206 In utils.c in zsh before 5.4, symlink expansion had a buffer overflow. 2018-03-08
CVE CVE-2017-18205 In builtin.c in zsh before 5.4, when sh compatibility mode is used, there is a NULL pointer dereference during processing of the cd command with no a 2018-03-08
CVE CVE-2016-10714 In zsh before 5.3, an off-by-one error resulted in undersized buffers that were intended to support PATH_MAX characters. 2018-03-08
CVE CVE-2018-7549 In params.c in zsh through 5.4.2, there is a crash during a copy of an empty hash table, as demonstrated by typeset -p. 2018-03-08
CVE CVE-2017-18205 In builtin.c in zsh before 5.4, when sh compatibility mode is used, there is a NULL pointer dereference during processing of the cd command with no a 2018-03-08
CVE CVE-2016-10714 In zsh before 5.3, an off-by-one error resulted in undersized buffers that were intended to support PATH_MAX characters. 2018-03-08
CVE CVE-2014-10072 In utils.c in zsh before 5.0.6, there is a buffer overflow when scanning very long directory paths for symbolic links. 2018-03-08
CVE CVE-2014-10071 In exec.c in zsh before 5.0.7, there is a buffer overflow for very long fds in the ">& fd" syntax. 2018-03-08
CVE CVE-2014-10070 zsh before 5.0.7 allows evaluation of the initial values of integer variables imported from the environment (instead of treating them as literal numb 2018-03-08
CVE CVE-2018-7549 In params.c in zsh through 5.4.2, there is a crash during a copy of an empty hash table, as demonstrated by typeset -p. 2018-03-08
CVE CVE-2017-18205 In builtin.c in zsh before 5.4, when sh compatibility mode is used, there is a NULL pointer dereference during processing of the cd command with no a 2018-03-08
CVE CVE-2016-10714 In zsh before 5.3, an off-by-one error resulted in undersized buffers that were intended to support PATH_MAX characters. 2018-03-08
CVE CVE-2014-10072 In utils.c in zsh before 5.0.6, there is a buffer overflow when scanning very long directory paths for symbolic links. 2018-03-08
CVE CVE-2014-10071 In exec.c in zsh before 5.0.7, there is a buffer overflow for very long fds in the ">& fd" syntax. 2018-03-08
CVE CVE-2014-10070 zsh before 5.0.7 allows evaluation of the initial values of integer variables imported from the environment (instead of treating them as literal numb 2018-03-08
CVE CVE-2018-7549 In params.c in zsh through 5.4.2, there is a crash during a copy of an empty hash table, as demonstrated by typeset -p. 2018-03-08
CVE CVE-2017-18206 In utils.c in zsh before 5.4, symlink expansion had a buffer overflow. 2018-03-08
CVE CVE-2017-18205 In builtin.c in zsh before 5.4, when sh compatibility mode is used, there is a NULL pointer dereference during processing of the cd command with no a 2018-03-08
CVE CVE-2016-10714 In zsh before 5.3, an off-by-one error resulted in undersized buffers that were intended to support PATH_MAX characters. 2018-03-08



About   -   Send Feedback to @ubuntu_updates