A libarchive security update is available for Oracle Linux 7.
Oracle Linux Security Advisory ELSA-2020-0203
http://linux.oracle.com/errata/ELSA-2020-0203.html
The following updated rpms for Oracle Linux 7 have been uploaded to the
Unbreakable Linux Network:
x86_64:
bsdcpio-3.1.2-14.el7_7.x86_64.rpm
bsdtar-3.1.2-14.el7_7.x86_64.rpm
libarchive-3.1.2-14.el7_7.i686.rpm
libarchive-3.1.2-14.el7_7.x86_64.rpm
libarchive-devel-3.1.2-14.el7_7.i686.rpm
libarchive-devel-3.1.2-14.el7_7.x86_64.rpm
SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/libarchive-3.1.2-14.el7_7.src.rpm
Description of changes:
[3.1.2-14]
- Fix patch application error
[3.1.2-13]
- Fix CVE-2019-18408: RAR use-after-free