RHSA-2022:4582: Important: gzip security update
The gzip packages contain the gzip (GNU zip) data compression utility. gzip is used to compress regular files. It replaces them with files containing the .gz extension, while retaining ownership modes, access, and modification times.Security Fix(es): gzip: arbitrary-file-write vulnerability (CVE-2022-1271) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:4582?
The severity of RHSA-2022:4582 is classified as 'important'.
How do I fix RHSA-2022:4582?
To fix RHSA-2022:4582, update the gzip package to version 1.10-9.el9_0.
Which packages are affected by RHSA-2022:4582?
RHSA-2022:4582 affects the gzip, gzip-debuginfo, and gzip-debugsource packages.
What type of vulnerability is addressed in RHSA-2022:4582?
RHSA-2022:4582 addresses an arbitrary file access vulnerability in the gzip package.
Is there a known exploit for RHSA-2022:4582?
There are no known public exploits specifically targeting the vulnerability described in RHSA-2022:4582.