File _patchinfo of Package patchinfo.26538
<patchinfo incident="26538"> <issue tracker="cve" id="2021-31566"/> <issue tracker="bnc" id="1192427">VUL-0: libarchive: Processing fixup entries may follow symbolic links</issue> <issue tracker="bnc" id="1192426">VUL-0: CVE-2021-31566: libarchive: modifies file flags of symlink target</issue> <packager>dspinella</packager> <rating>moderate</rating> <category>security</category> <summary>Security update for libarchive</summary> <description>This update for libarchive fixes the following issues: - CVE-2021-31566: Fixed incorrect usage of file flags (bsc#1192426). - Fixed issues where postprocessing alters symlink targets instead of actual file (bsc#1192427). </description> </patchinfo>