UbuntuUpdates.org

Package "bsdcpio"

Name: bsdcpio

Description:

transitional dummy package for moving bsdcpio to libarchive-tools

Latest version: 3.2.2-3.1ubuntu0.7
Release: bionic (18.04)
Level: security
Repository: universe
Head package: libarchive
Homepage: http://www.libarchive.org/

Links


Download "bsdcpio"


Other versions of "bsdcpio" in Bionic

Repository Area Version
base universe 3.2.2-3.1
updates universe 3.2.2-3.1ubuntu0.7

Changelog

Version: 3.2.2-3.1ubuntu0.1 2018-08-13 16:06:51 UTC

  libarchive (3.2.2-3.1ubuntu0.1) bionic-security; urgency=medium

  * SECURITY UPDATE: Out-of-bounds read
    - debian/patches/CVE-2017-14501.patch: fix in
      libarchive/archive_read_support_format_iso9660.c.
    - CVE-2017-14501
  * SECURITY UPDATE: Out-of-bounds read
    - debian/patches/CVE-2017-14503.patch: fix in
      libarchive/archive_read_support_format_lha.c.
    - CVE-2017-14503

 -- <email address hidden> (Leonidas S. Barbosa) Tue, 07 Aug 2018 15:23:21 -0300

CVE-2017-14501 An out-of-bounds read flaw exists in parse_file_info in archive_read_support_format_iso9660.c in libarchive 3.3.2 when extracting a specially crafted
CVE-2017-14503 libarchive 3.3.2 suffers from an out-of-bounds read within lha_read_data_none() in archive_read_support_format_lha.c when extracting a specially craf



About   -   Send Feedback to @ubuntu_updates