ALT-PU-2018-2144-1
Closed vulnerabilities
BDU:2021-01390
Уязвимость функции utils.c:checkmailpath командной оболочки UNIX Zsh, связанная с выходом операции за допустимые границы буфера данных, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
BDU:2021-01392
Уязвимость функции exec.c:hashcmd() командной оболочки UNIX Zsh, связанная с выходом операции за допустимые границы буфера данных, позволяющая нарушителю вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2018-1071
zsh through version 5.4.2 is vulnerable to a stack-based buffer overflow in the exec.c:hashcmd() function. A local attacker could exploit this to cause a denial of service.
- http://www.securityfocus.com/bid/103359
- https://access.redhat.com/errata/RHSA-2018:3073
- https://bugzilla.redhat.com/show_bug.cgi?id=1553531
- https://lists.debian.org/debian-lts-announce/2018/03/msg00038.html
- https://lists.debian.org/debian-lts-announce/2020/12/msg00000.html
- https://security.gentoo.org/glsa/201805-10
- https://usn.ubuntu.com/3608-1/
- http://www.securityfocus.com/bid/103359
- https://access.redhat.com/errata/RHSA-2018:3073
- https://bugzilla.redhat.com/show_bug.cgi?id=1553531
- https://lists.debian.org/debian-lts-announce/2018/03/msg00038.html
- https://lists.debian.org/debian-lts-announce/2020/12/msg00000.html
- https://security.gentoo.org/glsa/201805-10
- https://usn.ubuntu.com/3608-1/
Modified: 2024-11-21
CVE-2018-1100
zsh through version 5.4.2 is vulnerable to a stack-based buffer overflow in the utils.c:checkmailpath function. A local attacker could exploit this to execute arbitrary code in the context of another user.
- https://access.redhat.com/errata/RHSA-2018:1932
- https://access.redhat.com/errata/RHSA-2018:3073
- https://bugzilla.redhat.com/show_bug.cgi?id=1563395
- https://lists.debian.org/debian-lts-announce/2020/12/msg00000.html
- https://security.gentoo.org/glsa/201805-10
- https://sourceforge.net/p/zsh/code/ci/31f72205630687c1cef89347863aab355296a27f/
- https://usn.ubuntu.com/3764-1/
- https://access.redhat.com/errata/RHSA-2018:1932
- https://access.redhat.com/errata/RHSA-2018:3073
- https://bugzilla.redhat.com/show_bug.cgi?id=1563395
- https://lists.debian.org/debian-lts-announce/2020/12/msg00000.html
- https://security.gentoo.org/glsa/201805-10
- https://sourceforge.net/p/zsh/code/ci/31f72205630687c1cef89347863aab355296a27f/
- https://usn.ubuntu.com/3764-1/
Modified: 2024-11-21
CVE-2018-7548
In subst.c in zsh through 5.4.2, there is a NULL pointer dereference when using ${(PA)...} on an empty array result.
- https://security.gentoo.org/glsa/201805-10
- https://sourceforge.net/p/zsh/code/ci/110b13e1090bc31ac1352b28adc2d02b6d25a102
- https://usn.ubuntu.com/3593-1/
- https://security.gentoo.org/glsa/201805-10
- https://sourceforge.net/p/zsh/code/ci/110b13e1090bc31ac1352b28adc2d02b6d25a102
- https://usn.ubuntu.com/3593-1/
Modified: 2024-11-21
CVE-2018-7549
In params.c in zsh through 5.4.2, there is a crash during a copy of an empty hash table, as demonstrated by typeset -p.
- https://access.redhat.com/errata/RHSA-2018:3073
- https://security.gentoo.org/glsa/201805-10
- https://sourceforge.net/p/zsh/code/ci/c2cc8b0fbefc9868fa83537f5b6d90fc1ec438dd
- https://usn.ubuntu.com/3593-1/
- https://access.redhat.com/errata/RHSA-2018:3073
- https://security.gentoo.org/glsa/201805-10
- https://sourceforge.net/p/zsh/code/ci/c2cc8b0fbefc9868fa83537f5b6d90fc1ec438dd
- https://usn.ubuntu.com/3593-1/
Closed bugs
У zsh в сборочных зависимомтях есть git-core