openSUSE alert openSUSE-SU-2021:2565-1 (fastjar)
From: | opensuse-security@opensuse.org | |
To: | security-announce@lists.opensuse.org | |
Subject: | openSUSE-SU-2021:2565-1: Security update for fastjar | |
Date: | Thu, 29 Jul 2021 18:21:23 +0200 | |
Message-ID: | <20210729162123.8E45AFCC9@maintenance.suse.de> | |
Archive-link: | Article |
openSUSE Security Update: Security update for fastjar ______________________________________________________________________________ Announcement ID: openSUSE-SU-2021:2565-1 Rating: low References: #1188517 Cross-References: CVE-2010-2322 CVSS scores: CVE-2010-2322 (SUSE): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N Affected Products: openSUSE Leap 15.3 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for fastjar fixes the following issues: - CVE-2010-2322: Fixed a directory traversal vulnerabilities. (bsc#1188517) Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.3: zypper in -t patch openSUSE-SLE-15.3-2021-2565=1 Package List: - openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64): fastjar-0.98-3.6.2 fastjar-debuginfo-0.98-3.6.2 fastjar-debugsource-0.98-3.6.2 References: https://www.suse.com/security/cve/CVE-2010-2322.html https://bugzilla.suse.com/1188517