Sam Foxman discovered that Zsh incorrectly handled certain inputs. An attacker could possibly use this issue to regain dropped privileges. (CVE-2019-20044)
It was discovered that Zsh incorrectly handled certain inputs. An attacker could possibly use this issue to execute arbitrary code. (CVE-2021-45444)
{
"binaries": [
{
"binary_name": "zsh",
"binary_version": "5.1.1-1ubuntu2.3+esm1"
},
{
"binary_name": "zsh-common",
"binary_version": "5.1.1-1ubuntu2.3+esm1"
},
{
"binary_name": "zsh-static",
"binary_version": "5.1.1-1ubuntu2.3+esm1"
}
],
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}