Bug#1072855: libarchive: CVE-2024-37407

2024-11-02 Thread Salvatore Bonaccorso
Control: notfound -1 3.7.2-2.1 Control: notfixed -1 3.7.4-1 Control: fixed -1 Hi Actually if I'm not compltely wrong then the issue was only introduced in 3.7.3 upstream and fixed in 3.7.4, that means no Debian released version was ever affected by this issue. Regards, Salvatore

Bug#1072855: libarchive: CVE-2024-37407

2024-06-09 Thread Salvatore Bonaccorso
Source: libarchive Version: 3.7.2-2.1 Severity: important Tags: security upstream Forwarded: https://github.com/libarchive/libarchive/pull/2145 X-Debbugs-Cc: car...@debian.org, Debian Security Team Hi, The following vulnerability was published for libarchive. CVE-2024-37407[0]: | Libarchive bef