[Buildroot] [PATCH] libarchive: add security patch for CVE-2016-1541

Peter Korsgaard peter at korsgaard.com
Wed May 11 20:04:12 UTC 2016


>>>>> "Gustavo" == Gustavo Zacarias <gustavo at zacarias.com.ar> writes:

 > Fixes:
 > CVE-2016-1541 - heap-based buffer overflow vulnerability in the
 > zip_read_mac_metadata function in libarchive, a multi-format archive and
 > compression library, which may lead to the execution of arbitrary code
 > if a user or automated system is tricked into processing a specially
 > crafted ZIP file.

 > Signed-off-by: Gustavo Zacarias <gustavo at zacarias.com.ar>

Committed, thanks.

-- 
Bye, Peter Korsgaard



More information about the buildroot mailing list