{
  "cves": [
    "CVE-2022-37434"
  ],
  "cvss": 0.0,
  "database_specific": {
    "severity": "MODERATE"
  },
  "description": "[3.2.3-18]\n- Resolves: #2111177 - remote arbitrary files write inside the directories of connecting peers\n\n[3.2.3-17]\n- Resolves: #2116669 - zlib: a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field\n\n[3.2.3-16]\n- Related: #2081296 - Adding ci.fmf for separation of testing results\n\n[3.2.3-15]\n- Related: #2081296 - Disabling STI\n\n[3.2.3-14]\n- Resolves: #2071514 - A flaw found in zlib when compressing (not decompressing) certain inputs\n\n[3.2.3-13]\n- Resolves: #2079639 - rsync --atimes doesnt work\n\n[3.2.3-12]\n- Resolves: #2081296 - Enable fmf tests in centos stream\n\n[3.2.3-11]\n- Resolves: #2053198 - rsync segmentation fault\n\n[3.2.3-10]\n- Resolves: #2077431 - Read-only files that have changed xattrs fail to allow xattr changes",
  "id": "ELSA-2022-8291",
  "ovalId": "oval:com.oracle.elsa:def:20228291",
  "source": "oracle_linux",
  "title": "ELSA-2022-8291:  rsync security and bug fix update (MODERATE)",
  "url": "https://linux.oracle.com/errata/ELSA-2022-8291.html"
}