Release Info

Advisory: CLSA-2022:1661441056

OS: Ubuntu 16.04 ELS

Public date: 2022-08-25 00:00:00

Project: rsync

Version: 3.1.1-3ubuntu1.3+tuxcare.els3

Errata link: https://errata.cloudlinux.com/ubuntu16-els/CLSA-2022-1661441056.html

Changelog

* SECURITY UPDATE: possible buffer overflow when getting a gzip header extra field with inflate() - debian/patches/CVE-2022-37434.patch: ensure that space the user provided with inflateGetHeader() is enough when multiple calls of inflate() delivers an extra header data. - CVE-2022-37434

Update

Update command: apt-get update apt-get --only-upgrade install rsync*

Packages list

rsync_3.1.1-3ubuntu1.3+tuxcare.els3_amd64.deb

CVEs

CVE-2022-37434