Security News

Cybersecurity news aggregator

🔄
MEDIUM Updates Red Hat Errata

RHSA-2026:52675: Moderate: libarchive security update

  • What: Security update for libarchive
  • Impact: Red Hat Enterprise Linux 10 users
Read Full Article →

Red Hat Product Errata RHSA-2026:52675 - Security Advisory Issued: 2026-08-10 Updated: 2026-08-10 RHSA-2026:52675 - Security Advisory Overview Updated Packages Synopsis Moderate: libarchive security update Type/Severity Security Advisory: Moderate Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for libarchive is now available for Red Hat Enterprise Linux 10. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The libarchive programming library can create and read several different streaming archive formats, including GNU tar, cpio, and ISO 9660 CD-ROM images. Libarchive is used notably in the bsdtar utility, scripting language bindings such as python-libarchive, and several popular desktop file managers. Security Fix(es): libarchive: Double-Free Vulnerability in RAR5 Decompression Logic via dangling filtered_buf pointer in init_unpack() (CVE-2026-14164) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 10 x86_64 Red Hat Enterprise Linux for x86_64 - Extended Update Support 10.2 x86_64 Red Hat Enterprise Linux for IBM z Systems 10 s390x Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 10.2 s390x Red Hat Enterprise Linux for Power, little endian 10 ppc64le Red Hat Enterprise Linux for Power, little endian - Extended Update Support 10.2 ppc64le Red Hat Enterprise Linux for ARM 64 10 aarch64 Red Hat Enterprise Linux for ARM 64 - Extended Update Support 10.2 aarch64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 10.2 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 10.2 s390x Red Hat Enterprise Linux for Power, little endian - 4 years of support 10.2 ppc64le Red Hat Enterprise Linux for x86_64 - 4 years of updates 10.2 x86_64 Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 10.2 x86_64 Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 10.2 aarch64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 10.2 ppc64le Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 10.2 s390x Fixes BZ - 2493411 - CVE-2026-14164 libarchive: Double-Free Vulnerability in RAR5 Decompression Logic via dangling filtered_buf pointer in init_unpack() CVEs CVE-2026-14164 References https://access.redhat.com/security/updates/classification/#moderate Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 10 SRPM libarchive-3.7.7-10.el10_2.src.rpm SHA-256: 658e38518b6564f3aed252c496944444d719862642baff7e9895df0b4c31dcb9 x86_64 bsdcat-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: 04351bac45e82721f6b2ad79afda007bd1fdc6214d8fcbf5467157a022a70eba bsdcat-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: 04351bac45e82721f6b2ad79afda007bd1fdc6214d8fcbf5467157a022a70eba bsdcpio-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: 6e1dfca66ac5537310e0215ff8f4d8ab85a80cba0db902b8c4bb637119d9e9c9 bsdcpio-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: 6e1dfca66ac5537310e0215ff8f4d8ab85a80cba0db902b8c4bb637119d9e9c9 bsdtar-3.7.7-10.el10_2.x86_64.rpm SHA-256: 3b92c532991306a2043860bfab44963aac8207d3deaf036b15a60e8125553a04 bsdtar-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: c838352b0d3aa75ab552f91ad38d11981bafbdeb02ba5178bc9bdbee36073bc6 bsdtar-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: c838352b0d3aa75ab552f91ad38d11981bafbdeb02ba5178bc9bdbee36073bc6 bsdunzip-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: a5c4556b07756bd761ad99067a342cef36d9a03b399c3e80c853ab3f3d7a4829 bsdunzip-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: a5c4556b07756bd761ad99067a342cef36d9a03b399c3e80c853ab3f3d7a4829 libarchive-3.7.7-10.el10_2.x86_64.rpm SHA-256: c61aecda1f0056222775505b9d672ae59c583c9f7827097403ede2ab625fe7b5 libarchive-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: dfcb4d995297305652543f32fe21568123f738cd31c8c170949dbc629773ed17 libarchive-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: dfcb4d995297305652543f32fe21568123f738cd31c8c170949dbc629773ed17 libarchive-debugsource-3.7.7-10.el10_2.x86_64.rpm SHA-256: d1e27aba0a5c0c0010e500fad74e78811e97e93cc7a01874fb46bc69c395cdf6 libarchive-debugsource-3.7.7-10.el10_2.x86_64.rpm SHA-256: d1e27aba0a5c0c0010e500fad74e78811e97e93cc7a01874fb46bc69c395cdf6 libarchive-devel-3.7.7-10.el10_2.x86_64.rpm SHA-256: c48b9f668b0aba5ee520460405d8437f995e24993167ec5f448ce1b2248c31bd Red Hat Enterprise Linux for x86_64 - Extended Update Support 10.2 SRPM libarchive-3.7.7-10.el10_2.src.rpm SHA-256: 658e38518b6564f3aed252c496944444d719862642baff7e9895df0b4c31dcb9 x86_64 bsdcat-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: 04351bac45e82721f6b2ad79afda007bd1fdc6214d8fcbf5467157a022a70eba bsdcat-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: 04351bac45e82721f6b2ad79afda007bd1fdc6214d8fcbf5467157a022a70eba bsdcpio-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: 6e1dfca66ac5537310e0215ff8f4d8ab85a80cba0db902b8c4bb637119d9e9c9 bsdcpio-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: 6e1dfca66ac5537310e0215ff8f4d8ab85a80cba0db902b8c4bb637119d9e9c9 bsdtar-3.7.7-10.el10_2.x86_64.rpm SHA-256: 3b92c532991306a2043860bfab44963aac8207d3deaf036b15a60e8125553a04 bsdtar-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: c838352b0d3aa75ab552f91ad38d11981bafbdeb02ba5178bc9bdbee36073bc6 bsdtar-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: c838352b0d3aa75ab552f91ad38d11981bafbdeb02ba5178bc9bdbee36073bc6 bsdunzip-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: a5c4556b07756bd761ad99067a342cef36d9a03b399c3e80c853ab3f3d7a4829 bsdunzip-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: a5c4556b07756bd761ad99067a342cef36d9a03b399c3e80c853ab3f3d7a4829 libarchive-3.7.7-10.el10_2.x86_64.rpm SHA-256: c61aecda1f0056222775505b9d672ae59c583c9f7827097403ede2ab625fe7b5 libarchive-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: dfcb4d995297305652543f32fe21568123f738cd31c8c170949dbc629773ed17 libarchive-debuginfo-3.7.7-10.el10_2.x86_64.rpm SHA-256: dfcb4d995297305652543f32fe21568123f738cd31c8c170949dbc629773ed17 libarchive-debugsource-3.7.7-10.el10_2.x86_64.rpm SHA-256: d1e27aba0a5c0c0010e500fad74e78811e97e93cc7a01874fb46bc69c395cdf6 libarchive-debugsource-3.7.7-10.el10_2.x86_64.rpm SHA-256: d1e27aba0a5c0c0010e500fad74e78811e97e93cc7a01874fb46bc69c395cdf6 libarchive-devel-3.7.7-10.el10_2.x86_64.rpm SHA-256: c48b9f668b0aba5ee520460405d8437f995e24993167ec5f448ce1b2248c31bd Red Hat Enterprise Linux for IBM z Systems 10 SRPM libarchive-3.7.7-10.el10_2.src.rpm SHA-256: 658e38518b6564f3aed252c496944444d719862642baff7e9895df0b4c31dcb9 s390x bsdcat-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 332ada82774f44fa0acdc884775523bc504a89bbc879d09eafc392cb347146fc bsdcat-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 332ada82774f44fa0acdc884775523bc504a89bbc879d09eafc392cb347146fc bsdcpio-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 4edbf9e787c128678b96f1cc535ed65f68fd5b15fdeb8dcc4d9eac185370a548 bsdcpio-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 4edbf9e787c128678b96f1cc535ed65f68fd5b15fdeb8dcc4d9eac185370a548 bsdtar-3.7.7-10.el10_2.s390x.rpm SHA-256: 504430db7f45f5967aa6161224b35b121eaab492e263b3168555e10d0a2001ab bsdtar-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 3edbe46f317948d6097abb9024264eeb09b3d1ef8761404d204ffa161291fd49 bsdtar-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 3edbe46f317948d6097abb9024264eeb09b3d1ef8761404d204ffa161291fd49 bsdunzip-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 577e3150b7a9e493484ffb5df26f059a253f595cc85a47d9f8f4f286e645a9a4 bsdunzip-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 577e3150b7a9e493484ffb5df26f059a253f595cc85a47d9f8f4f286e645a9a4 libarchive-3.7.7-10.el10_2.s390x.rpm SHA-256: f540d4b2558b9a480be437a65027678863b0cbd74a49bfa803e0b523ee74f800 libarchive-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: a9040650b9060373f63a516243fe5a19d348a987cc302f80a1d144c13375062f libarchive-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: a9040650b9060373f63a516243fe5a19d348a987cc302f80a1d144c13375062f libarchive-debugsource-3.7.7-10.el10_2.s390x.rpm SHA-256: a5768480a675af1538d25b283c8c9ac7b1ea9b2cf4c635ba982f6592e67e8339 libarchive-debugsource-3.7.7-10.el10_2.s390x.rpm SHA-256: a5768480a675af1538d25b283c8c9ac7b1ea9b2cf4c635ba982f6592e67e8339 libarchive-devel-3.7.7-10.el10_2.s390x.rpm SHA-256: b53663253ccd6d5360cb6c46334cc65960ecc48d3b7a1aff5f64bdda0c7ab8fa Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 10.2 SRPM libarchive-3.7.7-10.el10_2.src.rpm SHA-256: 658e38518b6564f3aed252c496944444d719862642baff7e9895df0b4c31dcb9 s390x bsdcat-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 332ada82774f44fa0acdc884775523bc504a89bbc879d09eafc392cb347146fc bsdcat-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 332ada82774f44fa0acdc884775523bc504a89bbc879d09eafc392cb347146fc bsdcpio-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 4edbf9e787c128678b96f1cc535ed65f68fd5b15fdeb8dcc4d9eac185370a548 bsdcpio-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 4edbf9e787c128678b96f1cc535ed65f68fd5b15fdeb8dcc4d9eac185370a548 bsdtar-3.7.7-10.el10_2.s390x.rpm SHA-256: 504430db7f45f5967aa6161224b35b121eaab492e263b3168555e10d0a2001ab bsdtar-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 3edbe46f317948d6097abb9024264eeb09b3d1ef8761404d204ffa161291fd49 bsdtar-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 3edbe46f317948d6097abb9024264eeb09b3d1ef8761404d204ffa161291fd49 bsdunzip-debuginfo-3.7.7-10.el10_2.s390x.rpm SHA-256: 577e3150b7a9e493484ffb5df26f059a253f595cc85a47d9f8f4f286e645a9a4 bsdunzip-debuginfo-

Share this article