VYPR

rpm package

opensuse/libarchive&distro=openSUSE Leap Micro 5.3

pkg:rpm/opensuse/libarchive&distro=openSUSE%20Leap%20Micro%205.3

Vulnerabilities (2)

  • CVE-2024-20696Jan 9, 2024
    affected < 3.5.1-150400.3.15.1fixed 3.5.1-150400.3.15.1

    Windows libarchive Remote Code Execution Vulnerability

  • CVE-2022-36227Nov 22, 2022
    affected < 3.5.1-150400.3.12.1fixed 3.5.1-150400.3.12.1

    In libarchive before 3.6.2, the software does not check for an error after calling calloc function that can return with a NULL pointer if the function fails, which leads to a resultant NULL pointer dereference. NOTE: the discoverer cites this CWE-476 remark but third parties disp