[CLSA-2026:1778894153] libarchive: Fix of CVE-2025-60753
Type:
security
Severity:
Moderate
Release date:
2026-05-16 01:15:57 UTC
Description:
- CVE-2025-60753: denial of service in bsdtar -s substitution when the regular expression matches a zero-length string, causing an infinite loop in apply_substitution
Updated packages:
  • bsdcat-3.5.3-6.el9_6.tuxcare.els7.x86_64.rpm
    sha:01c81edd08f2027ef311a5bb029386a068bbf9ce9eaf2fc315ed2af38aadb6ba
  • bsdcpio-3.5.3-6.el9_6.tuxcare.els7.x86_64.rpm
    sha:a2d37f79923e5f6c9094eb755aba681b0c2e8a556dcb1bcb56d259a315d840ec
  • bsdtar-3.5.3-6.el9_6.tuxcare.els7.x86_64.rpm
    sha:d26be5cdb2b23adf4dbf1bd20fff878f2d52b9552e4ea257d6badc6a3668a0fc
  • libarchive-3.5.3-6.el9_6.tuxcare.els7.i686.rpm
    sha:ab49f0c081568f5fa61205faf24308872f87057b273628ab909c85069c5360c2
  • libarchive-3.5.3-6.el9_6.tuxcare.els7.x86_64.rpm
    sha:fd488067eb0c41341a145a3e90edac27cbadb7dfb3a9ada098500c89682826a0
  • libarchive-devel-3.5.3-6.el9_6.tuxcare.els7.i686.rpm
    sha:9998c1100e3edb2a8d240e23089aec64a4cc7f53c7787524b4820067b11972af
  • libarchive-devel-3.5.3-6.el9_6.tuxcare.els7.x86_64.rpm
    sha:567cd67ee2de2e49c4d212dc7181bf26245578cb71dd92aa158c4f5ce96321ca
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.