mirror of
https://github.com/openwrt/packages.git
synced 2025-12-26 15:36:19 +04:00
libarchive fixed a lot of security issues in the last few releases, listing only notable changes, libarchive 3.7.5: * rar4: protect copy_from_lzss_window_to_unp() CVE-2024-20696 * rar4: fix CVE-2024-26256 libarchive 3.7.6: * this release fixes a tar regression introduced in libarchive 3.7.5 libarchive 3.7.7: * gzip: prevent a hang when processing a malformed gzip inside a gzip (OSS-Fuzz) * tar: don't crash on truncated tar archives (OSS-Fuzz) * tar: fix two leaks in tar header parsing Link: https://github.com/libarchive/libarchive/releases Signed-off-by: Matthias Franck <matthias.franck@softathome.com>