An update is available for libarchive. This update affects Rocky Linux 9. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
bsdtar-0:3.5.3-9.el9_7.aarch64.rpm
bsdtar-0:3.5.3-9.el9_7.ppc64le.rpm
bsdtar-0:3.5.3-9.el9_7.s390x.rpm
bsdtar-0:3.5.3-9.el9_7.x86_64.rpm
bsdtar-debuginfo-0:3.5.3-9.el9_7.aarch64.rpm
bsdtar-debuginfo-0:3.5.3-9.el9_7.ppc64le.rpm
bsdtar-debuginfo-0:3.5.3-9.el9_7.s390x.rpm
bsdtar-debuginfo-0:3.5.3-9.el9_7.x86_64.rpm
libarchive-0:3.5.3-9.el9_7.aarch64.rpm
libarchive-0:3.5.3-9.el9_7.i686.rpm
libarchive-0:3.5.3-9.el9_7.ppc64le.rpm
libarchive-0:3.5.3-9.el9_7.s390x.rpm
libarchive-0:3.5.3-9.el9_7.src.rpm
libarchive-0:3.5.3-9.el9_7.x86_64.rpm
libarchive-debuginfo-0:3.5.3-9.el9_7.aarch64.rpm
libarchive-debuginfo-0:3.5.3-9.el9_7.i686.rpm
libarchive-debuginfo-0:3.5.3-9.el9_7.ppc64le.rpm
libarchive-debuginfo-0:3.5.3-9.el9_7.s390x.rpm
libarchive-debuginfo-0:3.5.3-9.el9_7.x86_64.rpm
libarchive-debugsource-0:3.5.3-9.el9_7.aarch64.rpm
libarchive-debugsource-0:3.5.3-9.el9_7.i686.rpm
libarchive-debugsource-0:3.5.3-9.el9_7.ppc64le.rpm
libarchive-debugsource-0:3.5.3-9.el9_7.s390x.rpm
Read the Full AdvisoryNo references
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-4424
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-5121
https://bugzilla.redhat.com/show_bug.cgi?id=2449006
https://bugzilla.redhat.com/show_bug.cgi?id=2452945
Get the latest Linux and open source security news straight to your inbox.