--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2015-7216
2015-04-30 05:48:12
--------------------------------------------------------------------------------

Name        : libarchive
Product     : Fedora 21
Version     : 3.1.2
Release     : 11.fc21
URL         : http://www.libarchive.org/
Summary     : A library for handling streaming archive formats
Description :
Libarchive is a programming library that can create and read several different
streaming archive formats, including most popular tar variants, several cpio
formats, and both BSD and GNU ar variants. It can also write shar archives and
read ISO9660 CDROM images and ZIP archives.

--------------------------------------------------------------------------------
Update Information:

Security fix for bug 1216891
--------------------------------------------------------------------------------
ChangeLog:

* Wed Apr 29 2015 Pavel Raiskup  - 3.1.2-11
- fix libarchive segfault for intentionally broken cpio archives (rhbz#1216892)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1216891 - libarchive: crash via malformed cpio archive
        https://bugzilla.redhat.com/show_bug.cgi?id=1216891
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use
su -c 'yum update libarchive' at the command line.
For more information, refer to "Managing Software with yum",
available at .

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
--------------------------------------------------------------------------------
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/

Fedora 21: libarchive Security Update

May 22, 2015
Security fix for bug 1216891

Summary

Libarchive is a programming library that can create and read several different

streaming archive formats, including most popular tar variants, several cpio

formats, and both BSD and GNU ar variants. It can also write shar archives and

read ISO9660 CDROM images and ZIP archives.

Update Information:

Security fix for bug 1216891

Change Log

* Wed Apr 29 2015 Pavel Raiskup - 3.1.2-11 - fix libarchive segfault for intentionally broken cpio archives (rhbz#1216892)

References

[ 1 ] Bug #1216891 - libarchive: crash via malformed cpio archive https://bugzilla.redhat.com/show_bug.cgi?id=1216891

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update libarchive' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
Name : libarchive
Product : Fedora 21
Version : 3.1.2
Release : 11.fc21
URL : http://www.libarchive.org/
Summary : A library for handling streaming archive formats

Related News