Updated libarchive packages fix security vulnerability
Publication date: 13 Dec 2022Modification date: 13 Dec 2022
Type: security
Affected Mageia releases : 8
CVE: CVE-2022-36227
Description
In libarchive 3.6.1, the software does not check for an error after
calling calloc function that can return with a NULL pointer if the
function fails, which leads to a resultant NULL pointer dereference.
(CVE-2022-36227)
References
SRPMS
8/core
- libarchive-3.6.1-1.1.mga8