-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 02 Jun 2024 16:38:00 +0200 Source: libarchive Binary: libarchive-dev libarchive-tools libarchive-tools-dbgsym libarchive13 libarchive13-dbgsym Architecture: armhf Version: 3.6.2-1+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-04) Changed-By: Salvatore Bonaccorso Description: libarchive-dev - Multi-format archive and compression library (development files) libarchive-tools - FreeBSD implementations of 'tar' and 'cpio' and other archive too libarchive13 - Multi-format archive and compression library (shared library) Closes: 1068047 1072107 Changes: libarchive (3.6.2-1+deb12u1) bookworm-security; urgency=high . [ Peter Pentchev ] * Add the robust-error-reporting upstream patch. Closes: #1068047 . [ Salvatore Bonaccorso ] * fix: OOB in rar e8 filter (CVE-2024-26256) (Closes: #1072107) * fix: OOB in rar delta filter * fix: OOB in rar audio filter Checksums-Sha1: 6c6dc8f4211bd0a818623eb831a280e985f6ea25 519620 libarchive-dev_3.6.2-1+deb12u1_armhf.deb c1588a56425e19595c58be470ecfc02625ab008b 92548 libarchive-tools-dbgsym_3.6.2-1+deb12u1_armhf.deb 417075c8c0dd7c2009cbe458cfda494a9593169d 69696 libarchive-tools_3.6.2-1+deb12u1_armhf.deb 83ed6de4ddcb7d3d50b9c768b9214858c502e097 1030240 libarchive13-dbgsym_3.6.2-1+deb12u1_armhf.deb 4eb9efc4017b1d9df6ddcb0cff58feeb220eb481 299336 libarchive13_3.6.2-1+deb12u1_armhf.deb 9d1855a46fa3cf1470e3132d248fe29f417cb56c 7641 libarchive_3.6.2-1+deb12u1_armhf-buildd.buildinfo Checksums-Sha256: c4233d4820cc49e55d16cd13b13844b1c8df677a21696a36823030db63592f16 519620 libarchive-dev_3.6.2-1+deb12u1_armhf.deb b276d87f1f628ffed130fc916562d13558d51f0b4e8ad14e70d02afddc2dd4d9 92548 libarchive-tools-dbgsym_3.6.2-1+deb12u1_armhf.deb cf51c0d1928c770ef28a1420298aec77f6291571f0fc5fc5867d12c146035642 69696 libarchive-tools_3.6.2-1+deb12u1_armhf.deb 015dbbefb0f5448b2e433caaf6d3fff268d9810b3d8f3c7f6f8be0cdd3e60c13 1030240 libarchive13-dbgsym_3.6.2-1+deb12u1_armhf.deb a0d8da4110977663383aaec23c414d5c13bd40a00fed6001f9ebee54dae22d03 299336 libarchive13_3.6.2-1+deb12u1_armhf.deb 367ed83f891d7746cea0e1678e74708c63f9a0401362d937b1c2c37352f633aa 7641 libarchive_3.6.2-1+deb12u1_armhf-buildd.buildinfo Files: d46cf05aebcf8c13e3319aa2b41fe6a8 519620 libdevel optional libarchive-dev_3.6.2-1+deb12u1_armhf.deb 3860e4668edbcf1b9e915112927d14fd 92548 debug optional libarchive-tools-dbgsym_3.6.2-1+deb12u1_armhf.deb 484b3027e01abc2e65f36f1e46df7fcb 69696 utils optional libarchive-tools_3.6.2-1+deb12u1_armhf.deb c4d9d35b96ca13234b2b2dceb4eca10e 1030240 debug optional libarchive13-dbgsym_3.6.2-1+deb12u1_armhf.deb a542d01318ceced85090619790c3c2ba 299336 libs optional libarchive13_3.6.2-1+deb12u1_armhf.deb 34ef9d8afb7c50c3f647a324a6631350 7641 libs optional libarchive_3.6.2-1+deb12u1_armhf-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE6s8UzO+WAx8RRAOV80lOEvgzuSsFAmZcjdEACgkQ80lOEvgz uSt4aBAArVu2Xq4Yp/Z9qAdwEynCtPg8186FMA4ZtaL6lrFQnawKJTp/kKsAFM+2 L7HwWMnFpFpQ6fCsxdUkiqZuu5Q0gAeHv+/GmemgcMac53tBYLOiAuNbNKYq5qiO VeBbvYaQlV7TkeFD1a2WCZ+5tn/avmzlbQARUpSeDxgGj5zZJRJaLT9JOWYO5kTs uJ2yx2/CaSBsSvB8q3yDrOyWF2wlazS68GTZf/zwIjV+5DXbx3u6h8FfTVYF7hzX 6ZYzOSOFQlElvOSJ0/EiwWOiN6KBzPkXAvJts//xoWC8Yc0IQjDsYK7WGLvRFEz9 6M76IgQFugvYiuJCdzf+6cqF88GAB2ikVrzkkC4I7y5LdVZa9NchDWQoQb/GfGB4 uLrDGtr0PK/ofWmMJQPrUmAwsTsL4LwVWMFgt9QWKMubMj4q2nOxjFGnCISqA1eF s4D2saKfgGYmRG2DWHZ3cAgfYmkxeLvJQIrg7h5cTa/ONt97nrHRxuJU+vt8msbr oZBW3n5P1qugwTO3B3TmmVFtQNWSUixskA7Algex5DKMTtzi+ndYbe1Bp5sxUps9 VBIrp1gFzudGjqtN2MFn1x74NmkjIxanj4BhNwfsoUF1oVqIo2JtMbN2tAveM59V EFoBYh9kvyJAGsyi/Rb5y0U6oh0JlZqno1Sj/NiqUKTy3Vx1kBE= =li7n -----END PGP SIGNATURE-----