[CLSA-2025:1766232351] libarchive: Fix of 3 CVEs
Type:
security
Severity:
Important
Release date:
2026-02-09 17:32:46 UTC
Description:
- CVE-2025-5916: fix signed integer overflow in WARC format reader - CVE-2025-5917: fix buffer overflow in build_ustar_entry for PAX format - CVE-2025-5918: prevent skipping past EOF in archive file reading
Updated packages:
  • bsdcat-3.5.3-6.el9_6.tuxcare.els1.x86_64.rpm
    sha:e870c430880504d1e78c2a5b6633397e05c68e43d72cc4cdf6774ae454a7035d
  • bsdcpio-3.5.3-6.el9_6.tuxcare.els1.x86_64.rpm
    sha:6e347fdb4eac9751829fe279272e1f43c57572781a693b902c4fa0744402062c
  • bsdtar-3.5.3-6.el9_6.tuxcare.els1.x86_64.rpm
    sha:3548cee9ef84738a4a999cd16b961156d5fadeefbb58ae6bcdf519e8b1096db3
  • libarchive-3.5.3-6.el9_6.tuxcare.els1.i686.rpm
    sha:c7fcb7986ce9410ca7596ac9b2fb4e85a80975efd6c3358fee56ce6f76695c6e
  • libarchive-3.5.3-6.el9_6.tuxcare.els1.x86_64.rpm
    sha:f6dab58c0a1fd74181189c5a21dbb169514cff87b7f68c06c4df616e783481ea
  • libarchive-devel-3.5.3-6.el9_6.tuxcare.els1.i686.rpm
    sha:e397dda409c5c3d2e66d51702f6263e936e6ffa632fe9a381c57a14fa89fdaa7
  • libarchive-devel-3.5.3-6.el9_6.tuxcare.els1.x86_64.rpm
    sha:7affab7c242bee78cc6142332b4a4dcf03ebb6f440e30f975a5f976ac90a438f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.