Automatic update for libarchive-3.7.2-4.fc40.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-cbb72aad83 2024-06-02 01:21:00.959163 -------------------------------------------------------------------------------- Name : libarchive Product : Fedora 40 Version : 3.7.2 Release : 4.fc40 URL : https://www.libarchive.org/ Summary : A library for handling streaming archive formats Description : Libarchive is a programming library that can create and read several different streaming archive formats, including most popular tar variants, several cpio formats, and both BSD and GNU ar variants. It can also write shar archives and read ISO9660 CDROM images and ZIP archives. -------------------------------------------------------------------------------- Update Information: Automatic update for libarchive-3.7.2-4.fc40. -------------------------------------------------------------------------------- ChangeLog: * Mon May 27 2024 Lukas Javorsky - 3.7.2-4 - Fix for CVE-2024-26256 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2282527 - CVE-2024-26256 libarchive: Heap based buffer overflow in rar e8 filter [fedora-40] https://bugzilla.redhat.com/show_bug.cgi?id=2282527 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-cbb72aad83' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Three issues have been found in libarchive, a multi-format archive and compression library. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-2987-1
Get the latest Linux and open source security news straight to your inbox.