RHBA-2022:3897MediumCVSS 6.5
Red Hat Bug Fix Advisory: new packages: libarchive
🔗 CVE IDs covered (1)
📋 Description
CVE-2021-36976 — libarchive: use-after-free in copy_string()
🎯 Affected products88
- Red Hat CodeReady Linux Builder (v. 9)
- Red Hat Enterprise Linux AppStream (v. 9)
- Red Hat Enterprise Linux BaseOS (v. 9)
- bsdcat-debuginfo-0:3.5.3-1.el9.aarch64 as a component of Red Hat CodeReady Linux Builder (v. 9)
- bsdcat-debuginfo-0:3.5.3-1.el9.aarch64 as a component of Red Hat Enterprise Linux AppStream (v. 9)
- bsdcat-debuginfo-0:3.5.3-1.el9.aarch64 as a component of Red Hat Enterprise Linux BaseOS (v. 9)
- bsdcat-debuginfo-0:3.5.3-1.el9.i686 as a component of Red Hat CodeReady Linux Builder (v. 9)
- bsdcat-debuginfo-0:3.5.3-1.el9.i686 as a component of Red Hat Enterprise Linux BaseOS (v. 9)
- bsdcat-debuginfo-0:3.5.3-1.el9.ppc64le as a component of Red Hat CodeReady Linux Builder (v. 9)
- bsdcat-debuginfo-0:3.5.3-1.el9.ppc64le as a component of Red Hat Enterprise Linux AppStream (v. 9)
- bsdcat-debuginfo-0:3.5.3-1.el9.ppc64le as a component of Red Hat Enterprise Linux BaseOS (v. 9)
- bsdcat-debuginfo-0:3.5.3-1.el9.s390x as a component of Red Hat CodeReady Linux Builder (v. 9)
- bsdcat-debuginfo-0:3.5.3-1.el9.s390x as a component of Red Hat Enterprise Linux AppStream (v. 9)
- bsdcat-debuginfo-0:3.5.3-1.el9.s390x as a component of Red Hat Enterprise Linux BaseOS (v. 9)
- bsdcat-debuginfo-0:3.5.3-1.el9.x86_64 as a component of Red Hat CodeReady Linux Builder (v. 9)
- bsdcat-debuginfo-0:3.5.3-1.el9.x86_64 as a component of Red Hat Enterprise Linux AppStream (v. 9)
- bsdcat-debuginfo-0:3.5.3-1.el9.x86_64 as a component of Red Hat Enterprise Linux BaseOS (v. 9)
- bsdcpio-debuginfo-0:3.5.3-1.el9.aarch64 as a component of Red Hat CodeReady Linux Builder (v. 9)
- bsdcpio-debuginfo-0:3.5.3-1.el9.aarch64 as a component of Red Hat Enterprise Linux AppStream (v. 9)
- bsdcpio-debuginfo-0:3.5.3-1.el9.aarch64 as a component of Red Hat Enterprise Linux BaseOS (v. 9)
- bsdcpio-debuginfo-0:3.5.3-1.el9.i686 as a component of Red Hat CodeReady Linux Builder (v. 9)
- bsdcpio-debuginfo-0:3.5.3-1.el9.i686 as a component of Red Hat Enterprise Linux BaseOS (v. 9)
- bsdcpio-debuginfo-0:3.5.3-1.el9.ppc64le as a component of Red Hat CodeReady Linux Builder (v. 9)
- bsdcpio-debuginfo-0:3.5.3-1.el9.ppc64le as a component of Red Hat Enterprise Linux AppStream (v. 9)
- bsdcpio-debuginfo-0:3.5.3-1.el9.ppc64le as a component of Red Hat Enterprise Linux BaseOS (v. 9)
- bsdcpio-debuginfo-0:3.5.3-1.el9.s390x as a component of Red Hat CodeReady Linux Builder (v. 9)
- bsdcpio-debuginfo-0:3.5.3-1.el9.s390x as a component of Red Hat Enterprise Linux AppStream (v. 9)
- bsdcpio-debuginfo-0:3.5.3-1.el9.s390x as a component of Red Hat Enterprise Linux BaseOS (v. 9)
- bsdcpio-debuginfo-0:3.5.3-1.el9.x86_64 as a component of Red Hat CodeReady Linux Builder (v. 9)
- bsdcpio-debuginfo-0:3.5.3-1.el9.x86_64 as a component of Red Hat Enterprise Linux AppStream (v. 9)
- +58 more not shown
✅ Remediation
Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258
🔗 References (4)
- selfhttps://access.redhat.com/errata/RHBA-2022:3897
- externalhttps://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html/9.0_release_notes/index
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1996634
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2022/rhba-2022_3897.json