RHSA-2016:1850HighCVSS 7.5

Red Hat Security Advisory: libarchive security update

Published
September 12, 2016
Last Modified
June 27, 2026

🔗 CVE IDs covered (7)

📋 Description

CVE-2015-8920 — libarchive: Stack out of bounds read in ar parser CVE-2015-8921 — libarchive: Global out of bounds read in mtree parser CVE-2015-8932 — libarchive: Undefined behavior / invalid shiftleft in TAR parser CVE-2016-4809 — libarchive: Memory allocate error with symbolic links in cpio archives CVE-2016-5418 — libarchive: Archive Entry with type 1 (hardlink), but has a non-zero data size file overwrite CVE-2016-5844 — libarchive: undefined behaviour (integer overflow) in iso parser CVE-2016-7166 — libarchive: Denial of service using a crafted gzip file

🔗 References (10)