Vulnerability Bulletins

DSA-3180 libarchive - security update

   
Affected software Debian
 
Alexander Cherepanov discovered that bsdcpio, an implementation of thecpio program part of the libarchive project, is susceptible to adirectory traversal vulnerability via absolute paths.

More info:

https://www.debian.org/security/2015/dsa-3180