zlib-1.2.7-21.el7_9 not marked as security fix

General support questions
Post Reply
vthyng
Posts: 2
Joined: 2023/06/29 20:07:15

zlib-1.2.7-21.el7_9 not marked as security fix

Post by vthyng » 2023/06/29 20:13:56

Can this patch meta data be corrected to indicate it includes a security fix?
I have zlib-1.2.7-20 installed. When I run yum update --security, zlib-1.2.7-21 is ignored. According to this page, -21 should have a CVE fix for CVE-2022-37434.
https://lists.centos.org/pipermail/cent ... 86387.html

Thank you,

Vince

User avatar
TrevorH
Site Admin
Posts: 33224
Joined: 2009/09/24 10:40:56
Location: Brighton, UK

Re: zlib-1.2.7-21.el7_9 not marked as security fix

Post by TrevorH » 2023/06/29 21:27:20

There is no security metadata in any CentOS version so there is nothing to add to. On CentOS yum --security has always been a noop.
The future appears to be RHEL or Debian. I think I'm going Debian.
Info for USB installs on http://wiki.centos.org/HowTos/InstallFromUSBkey
CentOS 5 and 6 are deadest, do not use them.
Use the FAQ Luke

vthyng
Posts: 2
Joined: 2023/06/29 20:07:15

Re: zlib-1.2.7-21.el7_9 not marked as security fix

Post by vthyng » 2023/06/30 18:01:25

Wow. Thank you for the answer.

Post Reply