gpp_maybe
Security update for apache-commons-compress
SUSE-SLE-Module-Development-Tools-15-SP2-2021-2612
This update for apache-commons-compress fixes the following issues: - Updated to 1.21 - CVE-2021-35515: Fixed an infinite loop when reading a specially crafted 7Z archive. (bsc#1188463) - CVE-2021-35516: Fixed an excessive memory allocation when reading a specially crafted 7Z archive. (bsc#1188464) - CVE-2021-35517: Fixed an excessive memory allocation when reading a specially crafted TAR archive. (bsc#1188465) - CVE-2021-36090: Fixed an excessive memory allocation when reading a specially crafted ZIP archive. (bsc#1188466)
-
Release DateAug 5 2021
-
ReferencesBugzilla: 1188465, 1188464, 1188466, 1188463
CVEs: CVE-2021-36090, CVE-2021-35515, CVE-2021-35517, CVE-2021-35516 -
Typesecurity
-
Severityimportant
cloud_download Downloads
Development Tools Module 15.2 aarch64
-
Packagesapache-commons-compress
Java API for working with compressed files and archivers1.21-3.3.1 lock rpm lock src
Development Tools Module 15.2 s390x
-
Packagesapache-commons-compress
Java API for working with compressed files and archivers1.21-3.3.1 lock rpm lock src
Development Tools Module 15.2 ppc64le
-
Packagesapache-commons-compress
Java API for working with compressed files and archivers1.21-3.3.1 lock rpm lock src
Development Tools Module 15.2 x86_64
-
Packagesapache-commons-compress
Java API for working with compressed files and archivers1.21-3.3.1 lock rpm lock src