UbuntuUpdates.org

Package "dpkg"

Name: dpkg

Description:

Debian package management system

Latest version: 1.22.21ubuntu3.2
Release: questing (25.10)
Level: security
Repository: main
Homepage: https://wiki.debian.org/Teams/Dpkg

Links


Download "dpkg"


Other versions of "dpkg" in Questing

Repository Area Version
base main 1.22.21ubuntu3
updates main 1.22.21ubuntu3.2

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 1.22.21ubuntu3.2 2026-05-07 14:07:39 UTC

  dpkg (1.22.21ubuntu3.2) questing-security; urgency=medium

  * SECURITY UPDATE: infinite loop uncompressing a zstd-compressed .deb archive
    - lib/dpkg/compress.c: terminate zstd decompression when we have no
      more data.
    - 6610297a62c0780dd0e80b0e302ef64fdcc9d313
    - CVE-2026-2219

 -- Marc Deslauriers <email address hidden> Wed, 06 May 2026 13:35:53 -0400

CVE-2026-2219 It was discovered that dpkg-deb (a component of dpkg, the Debian package management system) does not properly validate the end of the data stream whe



About   -   Send Feedback to @ubuntu_updates