openSUSE-SU-2022:0944-1
Dashboard / Vulnerabilities / openSUSE-SU-2022:0944-1
openSUSE-SU-2022:0944-1
Summary: Security update for libarchive
Details: This update for libarchive fixes the following issues: - CVE-2021-36976: Fixed an invalid memory access that could cause data corruption (bsc#1188572). Non-security updates: - Updated references for CVE-2017-5601, which was already fixed in a previous version (bsc#1022528 bsc#1189528).
References: https://lists.opensuse.org/archives/list/[email protected]/thread/2GOSOUIKGPKMNRIKY4M2SLF54G6W2YC4/, https://bugzilla.suse.com/1022528, https://bugzilla.suse.com/1188572, https://bugzilla.suse.com/1189528, https://www.suse.com/security/cve/CVE-2017-5601, https://www.suse.com/security/cve/CVE-2021-36976
Affected packages
Package
Name: libarchive
Purl: pkg:rpm/opensuse/libarchive&distro=openSUSE%20Leap%2015.3
Affected ranges
Type: ECOSYSTEM
Events:
