VYPR

rpm package

suse/libarchive&distro=SUSE Enterprise Storage 7

pkg:rpm/suse/libarchive&distro=SUSE%20Enterprise%20Storage%207

Vulnerabilities (2)

  • CVE-2021-36976Jul 20, 2021
    affected < 3.4.2-150200.4.3.1fixed 3.4.2-150200.4.3.1

    libarchive 3.4.1 through 3.5.1 has a use-after-free in copy_string (called from do_uncompress_block and process_block).

  • CVE-2017-5601HigJan 27, 2017
    affected < 3.4.2-150200.4.3.1fixed 3.4.2-150200.4.3.1

    An error in the lha_read_file_header_1() function (archive_read_support_format_lha.c) in libarchive 3.2.2 allows remote attackers to trigger an out-of-bounds read memory access and subsequently cause a crash via a specially crafted archive.