[CLSA-2026:1777366496] libarchive: Fix of CVE-2026-5121
Type:
security
Severity:
Important
Release date:
2026-04-28 08:55:01 UTC
Description:
- Fix CVE-2026-5121: heap buffer overflow in ISO9660 reader via invalid pz_log2_bs value in Rock Ridge ZF extension
Updated packages:
  • bsdcat-3.5.3-6.el9_6.tuxcare.els6.x86_64.rpm
    sha:a1cde6cb2ded9d0370bfeb4fd677ff07d7abd2edcf478f3abbeaadbb3b1e8d9a
  • bsdcpio-3.5.3-6.el9_6.tuxcare.els6.x86_64.rpm
    sha:a5d1028fed59fc97cac6e40c98b77a86cd4e4056687573c0b818797cce12cb6e
  • bsdtar-3.5.3-6.el9_6.tuxcare.els6.x86_64.rpm
    sha:3b4146f0e7899835607952ea6dcd018d56de0a842d1f990a6b14d942949ce4b5
  • libarchive-3.5.3-6.el9_6.tuxcare.els6.i686.rpm
    sha:f31cbf3e79165987716504b5737c6f057bd4a177edccdd2aec2096c5a5d443c6
  • libarchive-3.5.3-6.el9_6.tuxcare.els6.x86_64.rpm
    sha:e7345bf3ab33c239b42a311d60950269f866aa0dcea947b834df9e0c32f086a9
  • libarchive-devel-3.5.3-6.el9_6.tuxcare.els6.i686.rpm
    sha:4f0a5ddec430973aab02543734b8e7fa677337fb2aafd4be7c1fee4b542667be
  • libarchive-devel-3.5.3-6.el9_6.tuxcare.els6.x86_64.rpm
    sha:aa7146f3bb872fc8a8d93e194a4bf974d1996c9d8ddf577f49d3f4ee646c0fde
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.