AlmaLinux 9 — zziplib — multiple vulnerabilities (2 CVEs) — patch and remediation guide
🟡 Medium ⏱ 10–30 min Last verified: 25 May 2026 Affected versions: AlmaLinux 9 📖 ~4 min read • Source: AlmaLinux ALSA ALSA-2025:20838 Related CVEs: CVE-2018-17828 CVE-2020-18770 Upstream summary: The zziplib is a lightweight library to easily extract data from zip files. Security Fix(es): * zziplib: directory traversal in unzzip_cat in the bins/unzzipcat-mem.c (CVE-2018-17828) […]