libzstd 1.4.4+dfsg-3ubuntu0.1 source package in Ubuntu

Changelog

libzstd (1.4.4+dfsg-3ubuntu0.1) focal-security; urgency=medium

  * SECURITY UPDATE: race condition allows attacker to access
    world-readable destination file
    - debian/patches/0018-fix-file-permissions-on-compression.patch: set
      umask in programs/fileio.c, programs/util.c, programs/util.h.
    - CVE-2021-24031
    - CVE-2021-24032

 -- Marc Deslauriers <email address hidden>  Wed, 03 Mar 2021 10:47:34 -0500

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Focal
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Focal updates main misc
Focal security main misc

Downloads

File Size SHA-256 Checksum
libzstd_1.4.4+dfsg.orig.tar.xz 1.3 MiB be9f9bfd3f6816f21e1108869a9acad6efdc4882ed3f7a1f58ec752f67864890
libzstd_1.4.4+dfsg-3ubuntu0.1.debian.tar.xz 16.9 KiB 73175f873b1f46bcf466577b5552e7e39c2d4404c42fd5795def9ca78bac06d3
libzstd_1.4.4+dfsg-3ubuntu0.1.dsc 2.3 KiB 4063d12e511cc877586bcfcc3cbb20215f3360fb0c22e8ca61fa83f093127718

View changes file

Binary packages built by this source

libzstd-dev: fast lossless compression algorithm -- development files

 Zstd, short for Zstandard, is a fast lossless compression algorithm, targeting
 real-time compression scenarios at zlib-level compression ratio.
 .
 This package contains the headers and static library.

libzstd1: fast lossless compression algorithm

 Zstd, short for Zstandard, is a fast lossless compression algorithm, targeting
 real-time compression scenarios at zlib-level compression ratio.
 .
 This package contains the shared library.

libzstd1-dbgsym: debug symbols for libzstd1
libzstd1-udeb: fast lossless compression algorithm library for debian-installer
zstd: fast lossless compression algorithm -- CLI tool

 Zstd, short for Zstandard, is a fast lossless compression algorithm, targeting
 real-time compression scenarios at zlib-level compression ratio.
 .
 This package contains the CLI program implementing zstd.

zstd-dbgsym: debug symbols for zstd