-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 02 Jun 2024 16:38:00 +0200 Source: libarchive Binary: libarchive-dev libarchive-tools libarchive-tools-dbgsym libarchive13 libarchive13-dbgsym Architecture: amd64 Version: 3.6.2-1+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: amd64 Build Daemon (x86-grnet-03) Changed-By: Salvatore Bonaccorso Description: libarchive-dev - Multi-format archive and compression library (development files) libarchive-tools - FreeBSD implementations of 'tar' and 'cpio' and other archive too libarchive13 - Multi-format archive and compression library (shared library) Closes: 1068047 1072107 Changes: libarchive (3.6.2-1+deb12u1) bookworm-security; urgency=high . [ Peter Pentchev ] * Add the robust-error-reporting upstream patch. Closes: #1068047 . [ Salvatore Bonaccorso ] * fix: OOB in rar e8 filter (CVE-2024-26256) (Closes: #1072107) * fix: OOB in rar delta filter * fix: OOB in rar audio filter Checksums-Sha1: 30f534844486deca61760bda0e90728e42e2cc3e 560168 libarchive-dev_3.6.2-1+deb12u1_amd64.deb 892345c159abc3acbd3e10348b19ba7625f69095 96012 libarchive-tools-dbgsym_3.6.2-1+deb12u1_amd64.deb fdce1385791c3217a02d47d9617ad5abbc850a43 73728 libarchive-tools_3.6.2-1+deb12u1_amd64.deb 546bb5c0a08826404e86b440852670694c005b10 1057764 libarchive13-dbgsym_3.6.2-1+deb12u1_amd64.deb 307109c5aac1fa1aba74ec7fb011051cfcf6d4a0 342880 libarchive13_3.6.2-1+deb12u1_amd64.deb 899e78a0a4f2258e3c78c0418218d39806c280fd 7766 libarchive_3.6.2-1+deb12u1_amd64-buildd.buildinfo Checksums-Sha256: a152f2b9d0eb6c5e570dc0abe6c132839ae4ca33ba62f747439f7ac06ac7f3ee 560168 libarchive-dev_3.6.2-1+deb12u1_amd64.deb 9100035846b6f75dbc802a0a6241baebda924e9f80455ed1050c8af07d4e8a0f 96012 libarchive-tools-dbgsym_3.6.2-1+deb12u1_amd64.deb 30ad8f49c27eb0f636fd7a3ffc35244eb2e104fe4847b651f73c1a27f9cea83e 73728 libarchive-tools_3.6.2-1+deb12u1_amd64.deb 14e7dd3a01210d5e2f3f9d70ad831c0654fbb4b8fefa67e2f3840abfe24ad697 1057764 libarchive13-dbgsym_3.6.2-1+deb12u1_amd64.deb 0142827da6c7eb0e669628539fc516b0030b8a1503dcd45a6fee89e93ce9786b 342880 libarchive13_3.6.2-1+deb12u1_amd64.deb 801ae7717300b296923775c0e74f44136fde9326a41d6d041190f00caddc97ae 7766 libarchive_3.6.2-1+deb12u1_amd64-buildd.buildinfo Files: 26e670f4027153fda24f45f034dba534 560168 libdevel optional libarchive-dev_3.6.2-1+deb12u1_amd64.deb 96dbdbefd3f372193c0b90968b1c93d5 96012 debug optional libarchive-tools-dbgsym_3.6.2-1+deb12u1_amd64.deb af4ab1e20111a8a9b929110826b0c376 73728 utils optional libarchive-tools_3.6.2-1+deb12u1_amd64.deb 8526bd08176d8be0ae9bcb76b68d4dfd 1057764 debug optional libarchive13-dbgsym_3.6.2-1+deb12u1_amd64.deb 0d2dca0057a1975e8bc9137747fba0a3 342880 libs optional libarchive13_3.6.2-1+deb12u1_amd64.deb 063b33c0851be0472f3a11c8e2385ea2 7766 libs optional libarchive_3.6.2-1+deb12u1_amd64-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEe8x49oT2k+seQstpgDm7h4zfCpIFAmZcidsACgkQgDm7h4zf CpL7gQ/+KujdrTnd9WrU4g8grws7Z4jY51pUkWuRQX9vv9u01iP8UqhY8vGf8/JF pnl9dhrHSR01Y4MoPvhT6WfC9q8E0by1O30XJ2mVOTv/o/Ft4y8N7l3YAJEfRqnZ roeW5UUroH/Sl/NJE95BAWfrzPAJ1ebb7DXlNVWd0LVhya4rrPEaJGy+pTZe5LT8 B8Qal6wLCdUa5E90z3czXDDOSNeG++uae7AJECtH914TXlSfvnAYSQL+eDpkBv0C 0s6rvawNXvU28g7LtL48YODC4qlP/s9hnKOZjAEcWNkvywVJgJvu2z2eU4Yr6FDs PXwW3QA3eJSjuSePkjVqrL5k4wTu3OObpBwW6R58/SfHqMQZCle20W48ZWP1pJKy 6SaCru77Rq1xmwWBrDn/Z5xIzEl3cy/iPzZP6Ev7nbjVvsmzxdMa13pzUezyTxLf YTZ20qTpMvyR6AaceFG+DyiJ2oabVllvSVBYZyme5kgW3RbHtKNm9bkAQ0UK9sLo ABd2hKx8Suxde5rnSRbS5xK9NCE8gPyHITGzoERNJfoTkFQLqi3bnGedRhX9yB7K bUSHmabSOvcDiGjiaLuP/CRRcbo+aijUfBDjK/ZcLiFtMecIwBtIkzghPsTBsAmB ug0fTfwuVyKWCd2C6g53E976sxyYrhM5r+vpPsh8y6UrH/rvFoc= =DlRj -----END PGP SIGNATURE-----