Copied from
ubuntu precise in
Private PPA for Ubuntu Security Team
by Ubuntu Archive Robot
Changelog
libarchive (3.0.3-6ubuntu1.2) precise-security; urgency=medium
* SECURITY UPDATE: denial of service via malformed cpio archive
- debian/patches/issue502.patch: fix implicit cast in
libarchive/archive_read_support_format_cpio.c, reject attempts to
move the file pointer by a negative amount in
libarchive/archive_read.c.
- CVE number pending.
-- Marc Deslauriers <email address hidden> Fri, 13 May 2016 10:15:48 -0400