{"id":"CLSA-2022-1657814965","summary":"Fix CVE(s): CVE-2022-1473, CVE-2022-1292, CVE-2022-2068","details":"\n   * SECURITY REGRESSION: Invalid fix for CVE-2022-1473\n     - debian/patches/CVE-2022-1473.patch: removing unnecessary patch since\n       this version is actually not affected\n   * SECURITY UPDATE: c_rehash script allows command injection\n     - debian/patches/CVE-2022-1292.patch: switch to upstream patch, and\n       apply it before c_rehash-compat.patch\n     - debian/patches/CVE-2022-2068.patch: fix file operations in\n       tools/c_rehash.in\n     - debian/patches/c_rehash-compat.patch: updated patch to apply after\n       the security updates\n     - CVE-2022-2068","modified":"2026-06-04T10:04:40.603157538Z","published":"2022-07-14T16:09:25Z","upstream":["CVE-2022-1292","CVE-2022-1473","CVE-2022-2068"],"references":[{"type":"ADVISORY","url":"https://errata.cloudlinux.com/ubuntu16_04/CLSA-2022-1657814965"}],"affected":[{"package":{"name":"libssl-dev","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/libssl-dev?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.2g-1ubuntu4.21+tuxcare.els4"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2022-1657814965.json"}},{"package":{"name":"libssl-doc","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/libssl-doc?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.2g-1ubuntu4.21+tuxcare.els4"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2022-1657814965.json"}},{"package":{"name":"libssl1.0.0","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/libssl1.0.0?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.2g-1ubuntu4.21+tuxcare.els4"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2022-1657814965.json"}},{"package":{"name":"openssl","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/openssl?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.2g-1ubuntu4.21+tuxcare.els4"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2022-1657814965.json"}}],"schema_version":"1.7.5"}