gpp_maybe
Security update for libarchive
SUSE-SL-Micro-6.2-799
This update for libarchive fixes the following issues - CVE-2026-4111: logical deadlock the RAR5 filter subsystem and the half-window output limiter leads to infinite loop and DoS (bsc#1259635). - CVE-2026-4424: 257-byte heap memory leak when processing a 170-byte RAR3 (bsc#1259928). - CVE-2026-4426: undefined behavior due to unvalidated operand in shift expression of the zisofs decompression code (bsc#1259931). - CVE-2026-5121: missing validation check for pz_log2_bs can a heap buffer overflow write (bsc#1261186).
-
Release DateMay 25 2026
-
ReferencesBugzilla: 1259635, 1259928, 1259931, 1261186
CVEs: CVE-2026-4111, CVE-2026-4424, CVE-2026-4426, CVE-2026-5121 -
Typesecurity
-
Severityimportant
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
SUSE Linux Micro 6.2 ppc64le
-
Packageslibarchive13
Library to work with several different streaming archive formats3.8.1-160000.3.1 lock rpm
SUSE Linux Micro 6.2 aarch64
-
Packageslibarchive13
Library to work with several different streaming archive formats3.8.1-160000.3.1 lock rpm
SUSE Linux Micro 6.2 s390x
-
Packageslibarchive13
Library to work with several different streaming archive formats3.8.1-160000.3.1 lock rpm
SUSE Linux Micro 6.2 x86_64
-
Packageslibarchive13
Library to work with several different streaming archive formats3.8.1-160000.3.1 lock rpm