[CLSA-2026:1777051545] zsh: Fix of 3 CVEs
Type:
security
Severity:
Critical
Release date:
2026-04-24 17:25:50 UTC
Description:
- CVE-2018-1071: check bounds when copying path in hashcmd() - CVE-2018-7549: avoid crash copying empty hash table - CVE-2018-13259: fix shebang line truncation in zexecve()
Updated packages:
  • zsh-4.3.11-11.el6_10.tuxcare.els1.x86_64.rpm
    sha:82b8f1d5d1c77604d6b951638b89a1efdf153fd69870907f949d847f9440a998
  • zsh-html-4.3.11-11.el6_10.tuxcare.els1.x86_64.rpm
    sha:3491a9480cc6d180b894111bedba41ae98e59fad677ef3988ef9e7d4dfbf0ad5
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.