ELA-427-1 lz4 security update

Memory corruption vulnerability

2021-05-12
Packagelz4
Version0.0~r122-2+deb8u1
Related CVEs CVE-2021-3520


It was discovered that there was a potential memory corruption vulnerability in the lz4 compression algorithm library.



For Debian 8 Jessie, these problems have been fixed in version 0.0~r122-2+deb8u1.

We recommend that you upgrade your lz4 packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.