Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Fedora 44 libarchive Critical DoS Remote Exec Alert 2026-54ce3fd147

fedora
Calendar Grey April 28, 2026
Dist Fedora Esm H88
Get the latest update for Fedora 44 libarchive 3.8.7 addressing critical issues like Denial of Service and code execution.
Rebase to the latest upstream version - 3.8.7

Summary

Libarchive is a programming library that can create and read several different

streaming archive formats, including most popular tar variants, several cpio

formats, and both BSD and GNU ar variants. It can also write shar archives and

read ISO9660 CDROM images and ZIP archives.

Update Information:

Rebase to the latest upstream version - 3.8.7

Change Log

* Mon Apr 13 2026 Packit - 3.8.7-1 - Update to version 3.8.7 - Resolves: rhbz#2457948

References


[ 1 ] Bug #2449011 - CVE-2026-4426 libarchive: libarchive: Denial of Service via malformed ISO file processing [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2449011 [ 2 ] Bug #2452946 - CVE-2026-5121 libarchive: libarchive: Arbitrary code execution via integer overflow in ISO9660 image processing [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2452946

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-54ce3fd147' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: libarchive
Product: Fedora 44
Version: 3.8.7
Release: 1.fc44
Summary: A library for handling streaming archive formats

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here