RHSA-2024:8922: Low: bzip2 security update
Low: bzip2 security update
Other sources
The bzip2 packages contain a freely available, high-quality data compressor. It provides both standalone compression and decompression utilities, as well as a shared library for use with other programs. <br>Security Fix(es):<br><li> bzip2: out-of-bounds write in function BZ2decompress (CVE-2019-12900)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:8922?
The severity of RHSA-2024:8922 is classified as low.
How do I fix RHSA-2024:8922?
To fix RHSA-2024:8922, upgrade the bzip2 packages to version 1.0.6-27.el8_10.
What vulnerability does RHSA-2024:8922 address?
RHSA-2024:8922 addresses an out-of-bounds write vulnerability in bzip2.
Which systems are affected by RHSA-2024:8922?
RHSA-2024:8922 affects Red Hat Enterprise Linux packages for various architectures including x86_64, ARM 64, Power, and IBM z Systems.
Is a reboot required after applying the RHSA-2024:8922 update?
A reboot is not typically required after applying the updates for RHSA-2024:8922.