|
|
Log in / Subscribe / Register

libarchive: file overwrite

Package(s):libarchive CVE #(s):CVE-2016-5418
Created:September 13, 2016 Updated:October 17, 2016
Description: From the Red Hat advisory:

A flaw was found in the way libarchive handled hardlink archive entries of non-zero size. Combined with flaws in libarchive's file system sandboxing, this issue could cause an application using libarchive to overwrite arbitrary files with arbitrary data from the archive.

Alerts:
Debian-LTS DLA-657-1 libarchive 2016-10-16
Mageia MGASA-2016-0318 libarchive 2016-09-25
Debian DSA-3677-1 libarchive 2016-09-25
CentOS CESA-2016:1844 libarchive 2016-09-16
CentOS CESA-2016:1850 libarchive 2016-09-15
Scientific Linux SLSA-2016:1850-1 libarchive 2016-09-12
Scientific Linux SLSA-2016:1844-1 libarchive 2016-09-12
Oracle ELSA-2016-1850 libarchive 2016-09-12
Oracle ELSA-2016-1844 libarchive 2016-09-12
Red Hat RHSA-2016:1853-01 Red Hat OpenShift Enterprise 3.2 2016-09-12
Red Hat RHSA-2016:1852-01 Red Hat OpenShift Enterprise 3.1 2016-09-12
Red Hat RHSA-2016:1850-01 libarchive 2016-09-12
Red Hat RHSA-2016:1844-01 libarchive 2016-09-12
Gentoo 201701-03 libarchive 2017-01-01
openSUSE openSUSE-SU-2016:3005-1 libarchive 2016-12-05
openSUSE openSUSE-SU-2016:3002-1 libarchive 2016-12-05

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds