CVE-2022-1271: Fixed an incorrect escaping of malicious filenames (ZDI-CAN-16587). (bsc#1198062)
Affected Packages
liblzma5
SUSE Enterprise Storage 6SUSE Enterprise Storage 7SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOSSUSE Linux Enterprise High Performance Computing 15 SP1-LTSSSUSE Linux Enterprise High Performance Computing 15 SP2-ESPOS
Fixed in:
5.2.3-150000.4.7.1
liblzma5-32bit
SUSE Enterprise Storage 6SUSE Enterprise Storage 7SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOSSUSE Linux Enterprise High Performance Computing 15 SP1-LTSSSUSE Linux Enterprise High Performance Computing 15 SP2-ESPOS
Fixed in:
5.2.3-150000.4.7.1
xz
SUSE Enterprise Storage 6SUSE Enterprise Storage 7SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOSSUSE Linux Enterprise High Performance Computing 15 SP1-LTSSSUSE Linux Enterprise High Performance Computing 15 SP2-ESPOS
Fixed in:
5.2.3-150000.4.7.1
xz-devel
SUSE Enterprise Storage 6SUSE Enterprise Storage 7SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOSSUSE Linux Enterprise High Performance Computing 15 SP1-LTSSSUSE Linux Enterprise High Performance Computing 15 SP2-ESPOS
Fixed in:
5.2.3-150000.4.7.1
xz-lang
SUSE Enterprise Storage 6SUSE Enterprise Storage 7SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOSSUSE Linux Enterprise High Performance Computing 15 SP1-LTSSSUSE Linux Enterprise High Performance Computing 15 SP2-ESPOS
Fixed in:
5.2.3-150000.4.7.1
xz-static-devel
SUSE Enterprise Storage 6SUSE Enterprise Storage 7SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOSSUSE Linux Enterprise High Performance Computing 15 SP1-LTSSSUSE Linux Enterprise High Performance Computing 15 SP2-ESPOS