Packages
Get Gentoo!
gentoo.org sites
gentoo.org
Wiki
Bugs
Forums
Packages
Planet
Archives
Sources
Infra Status
Home
Packages
Maintainers
USE flags
Architectures
About
app-arch
The app-arch category contains tools for archiving, compressing and uncompressing files or groups of files.
Packages
Stabilization
5
Outdated
16
Pull requests
10
Bugs
154
Security
17
Security Bug Reports
app-arch/lrzip: invalid memory read in lzo1x_decompress
682270 - Assigned to Gentoo Security
<app-arch/file-roller-3.38.1: arbitrary file overwrite via malicious archive
780858 - Assigned to Gentoo Security
<app-arch/lrzip-0.650: Multiple vulnerabilities
834456 - Assigned to Gentoo Security
app-arch/lrzip: DoS via invalid arithmetic shifts
856055 - Assigned to Gentoo Security
app-arch/unzip: null pointer dereference
866386 - Assigned to Gentoo Security
<app-arch/pxz-5.0_pre20220509: Race condition in setting permissions on output file
881377 - Assigned to Gentoo Security
<app-arch/advancecomp-2.4: multiple vulnerabilities
882571 - Assigned to Gentoo Security
<app-arch/upx-4.0.1-r1 <app-arch/upx-bin-4.0.2: multiple vulnerabilities
890616 - Assigned to Gentoo Security
<app-arch/upx-4.0.2 <app-arch/upx-bin-4.0.2: multiple vulnerabilities
903139 - Assigned to Gentoo Security
<app-arch/bzip3-1.3.0: multiple vulnerabilities
904037 - Assigned to Gentoo Security
<app-arch/advancecomp-2.5: segmentation fault
908080 - Assigned to Gentoo Security
app-arch/p7zip: multiple vulnerabilities
914736 - Assigned to Gentoo Security
<app-arch/libarchive-3.7.2-r3: possible error reporting terminal injection vulnerability in tar handling
928146 - Assigned to Gentoo Security
<app-arch/libarchive-3.7.5: Multiple vulnerabilities
939800 - Assigned to Gentoo Security
app-arch/p7zip: vulnerability in zstandard implementation?
944462 - Assigned to Gentoo Security
<app-arch/7zip-24.07: vulnerability in zstandard implementation
945395 - Assigned to Gentoo Security
app-arch/p7zip: Add upstream patch for lz4 integer overflow (CVE-2021-3520)
946399 - Assigned to Gentoo Security
Contact Information
Please file new vulnerability reports on
Gentoo Bugzilla
and assign them to the Gentoo Security product and Vulnerabilities component.