forked from products/SUSE_ALP_Standard
Adding patchinfo patchinfo.20240909081141030713.269002615871826
This commit is contained in:
2
.gitmodules
vendored
2
.gitmodules
vendored
@@ -1158,7 +1158,7 @@
|
||||
url = ../../pool/libalternatives
|
||||
[submodule "libarchive"]
|
||||
path = libarchive
|
||||
url = ../../pool/libarchive
|
||||
url = ../../ALP-pool/libarchive
|
||||
[submodule "libass"]
|
||||
path = libass
|
||||
url = ../../pool/libass
|
||||
|
Submodule libarchive updated: 431c5ee2fd...ea570bba36
18
patchinfo.20240909081141030713.269002615871826/_patchinfo
Normal file
18
patchinfo.20240909081141030713.269002615871826/_patchinfo
Normal file
@@ -0,0 +1,18 @@
|
||||
<patchinfo>
|
||||
<!-- generated from request(s) 335514 -->
|
||||
<issue tracker="bnc" id="1225971">VUL-0: CVE-2024-20696: libarchive: heap based out-of-bounds write</issue>
|
||||
<issue tracker="bnc" id="1225972">VUL-0: CVE-2024-20697: libarchive: Out of bounds Remote Code Execution Vulnerability</issue>
|
||||
<issue tracker="cve" id="2024-20696"/>
|
||||
<issue tracker="cve" id="2024-20697"/>
|
||||
<packager>ateixeira</packager>
|
||||
<rating>important</rating>
|
||||
<category>security</category>
|
||||
<summary>Security update for libarchive</summary>
|
||||
<description>This update for libarchive fixes the following issues:
|
||||
|
||||
- CVE-2024-20696: Fixed out-of-bounds access in in copy_from_lzss_window_to_unp() (bsc#1225971)
|
||||
- CVE-2024-20697: Fixed heap based buffer overflow in rar e8 filter (bsc#1225972)
|
||||
</description>
|
||||
<package>libarchive</package>
|
||||
<seperate_build_arch/>
|
||||
</patchinfo>
|
Reference in New Issue
Block a user