-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 - ----------------------------------------------------------------------- Debian LTS Advisory DLA-2977-1 [email protected] https://www.debian.org/lts/security/ Utkarsh Gupta April 10, 2022 https://wiki.debian.org/LTS - -----------------------------------------------------------------------
Package : xz-utils Version : 5.2.2-1.2+deb9u1 CVE ID : CVE-2022-1271 Debian Bug : 1009167 An arbitrary-file-write vulnerability was discovered in xz-utils, which provides XZ-format compression utilities. For Debian 9 stretch, this problem has been fixed in version 5.2.2-1.2+deb9u1. We recommend that you upgrade your xz-utils packages. For the detailed security status of xz-utils please refer to its security tracker page at: https://security-tracker.debian.org/tracker/xz-utils Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEbJ0QSEqa5Mw4X3xxgj6WdgbDS5YFAmJS1n4ACgkQgj6WdgbD S5asgQ/+IboSQRu667mhmgsR0Deiyq06CwNtp8CsTJErYdgczZM9eL+IIjs2/JyQ k6q26d1bLP61vGYjo5lP9xZWnLCqbsTjD1OLEap8k0aVvAWiYgC5TJCV8WbRkBtp j819R/i1x3LTrPwBm174HhDpz0sm/UnGCh9PL+iXZiBnyHiyZtRF5foY6Vw9ZUTk S5aXY1Fp9q1RCTuEGuJU/O639XPsSaSRkHfs7oiOWu2pMbfGlGahmP/b7B0B7dio bPlAHi/GGAv6p5t/2N13GT5YdOQvZ6MIZckshr5vogAuDpIz9BNyWHki/nTm19Gw TLSC84yxQULijdlax20Kg5/aJzWFYgwzEANW8QZBLuwD4fjjosH8MVrKvLxrKSvb 9ZSQ8vbYO/A7OboPpLFJG5y3MzoWv+xuR1oey1KzDAjzokqmLWP+I2s8lshC1scH 8oV2QHErO0nlVjOsr2i+WRnv/fvUG9l6XwJr9vmg8peBObL6GTzQlIdzOi3/JWQQ 0evg7oLhYQ8g1WH8tUJUoLdC2Wf1sqTxjLmdgy13dENdim8BLoM9a/dvUpXDlYad /w3BjsGmwDdiiGBz1Kw0yzs9+o9AD9/dHaDv5RfJZ3WRrvehd8YxZ1qcWRT849jl 5yUhMtM0LZR3LoJXMhb2QXGn46nDGEUcbx5C50LeiPLGlXfm2C4= =tuh+ -----END PGP SIGNATURE-----
