Oracle Linux 6161 Published by

A plexus-archiver security update has been released for Oracle Linux 7.



ELSA-2023-6886 Important: Oracle Linux 7 plexus-archiver security update


Oracle Linux Security Advisory ELSA-2023-6886

http://linux.oracle.com/errata/ELSA-2023-6886.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

x86_64:
plexus-archiver-2.4.2-6.el7_9.noarch.rpm
plexus-archiver-javadoc-2.4.2-6.el7_9.noarch.rpm

SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates//plexus-archiver-2.4.2-6.el7_9.src.rpm

Related CVEs:

CVE-2023-37460

Description of changes:

[0:2.4.2-6]
- Avoid override target symlink by standard file in AbstractUnArchiver
- Fixes: CVE-2023-37460