Описание
ELSA-2020-0271: libarchive security update (IMPORTANT)
[3.3.2-8]
- Fix CVE-2019-18408: RAR use-after-free
Обновленные пакеты
Oracle Linux 8
Oracle Linux aarch64
bsdtar
3.3.2-8.el8_1
libarchive
3.3.2-8.el8_1
libarchive-devel
3.3.2-8.el8_1
Oracle Linux x86_64
bsdtar
3.3.2-8.el8_1
libarchive
3.3.2-8.el8_1
libarchive-devel
3.3.2-8.el8_1
Связанные CVE
Связанные уязвимости
archive_read_format_rar_read_data in archive_read_support_format_rar.c in libarchive before 3.4.0 has a use-after-free in a certain ARCHIVE_FAILED situation, related to Ppmd7_DecodeSymbol.
archive_read_format_rar_read_data in archive_read_support_format_rar.c in libarchive before 3.4.0 has a use-after-free in a certain ARCHIVE_FAILED situation, related to Ppmd7_DecodeSymbol.
archive_read_format_rar_read_data in archive_read_support_format_rar.c in libarchive before 3.4.0 has a use-after-free in a certain ARCHIVE_FAILED situation, related to Ppmd7_DecodeSymbol.
archive_read_format_rar_read_data in archive_read_support_format_rar.c ...
archive_read_format_rar_read_data in archive_read_support_format_rar.c in libarchive before 3.4.0 has a use-after-free in a certain ARCHIVE_FAILED situation, related to Ppmd7_DecodeSymbol.