USN-6906-1: python-zipp vulnerability
24 July 2024
python-zipp could be made to crash if certain zip files are used.
Releases
Packages
- python-zipp - pathlib-compatible Zipfile object wrapper - Python 2.7
Details
It was discovered that python-zipp did not properly handle the zip files
with malformed names. An attacker could possibly use this issue to cause a
denial of service.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 24.04
Ubuntu 22.04
Ubuntu 20.04
In general, a standard system update will make all the necessary changes.