v3.7.5
版本发布时间: 2024-09-14 05:09:53
libarchive/libarchive最新发布版本:v3.7.6(2024-09-23 17:43:25)
Libarchive 3.7.5 is a bugfix and security release
Security fixes:
- fix multiple vulnerabilities identified by SAST (#2251, #2256)
- cpio: ignore out-of-range gid/uid/size/ino and harden AFIO parsing (#2258)
- lzop: prevent integer overflow (#2174)
- rar4: protect copy_from_lzss_window_to_unp() (#2172, CVE-2024-20696)
- rar4: fix CVE-2024-26256 (#2269, CVS-2024-26256)
- rar4: fix OOB in delta and audio filter (#2148, #2149)
- rar4: fix out of boundary access with large files (#2179)
- rar4: add boundary checks to rgb filter (#2210)
- rar4: fix OOB access with unicode filenames (#2203)
- rar5: clear 'data ready' cache on window buffer reallocs (#2265)
- rpm: calculate huge header sizes correctly (#2158)
- unzip: unify EOF handling (#2175)
- util: fix out of boundary access in mktemp functions (#2160)
- uu: stop processing if lines are too long (#2168)
Important bugfixes:
- 7zip: fix issue when skipping first file in 7zip archive that is a multiple of 65536 bytes (#2245)
- ar: fix archive entries having no type (#2290)
- lha: do not allow negative file sizes (#2155)
- lha: fix integer truncation on 32-bit systems (#2161)
- shar: check strdup return value (#2173)
- rar5: don't try to read rediculously long names (#2259)
- xar: fix another infinite loop and expat error handling (#2150)
- many Windows fixes, cleanups and improvements
Thanks to all contributors and bug reporters!
1、 libarchive-3.7.5.tar.gz 7.3MB
2、 libarchive-3.7.5.tar.gz.asc 659B
3、 libarchive-3.7.5.tar.xz 5.19MB
4、 libarchive-3.7.5.tar.xz.asc 659B
5、 libarchive-3.7.5.zip 8.26MB
6、 libarchive-3.7.5.zip.asc 659B