Heap based buffer overflow vulnerability in read_Header was found when reading corrupted 7zip files. Upstream patch: https://github.com/libarchive/libarchive/commit/7f17c791dcfd8c0416e2cd2485b19410e47ef126 CVE assignment: http://seclists.org/oss-sec/2016/q4/152
Created libarchive3 tracking bugs for this issue: Affects: epel-6 [bug 1385676]
Created mingw-libarchive tracking bugs for this issue: Affects: fedora-all [bug 1385674]
Created libarchive tracking bugs for this issue: Affects: fedora-all [bug 1385673] Affects: epel-5 [bug 1385675]
*** This bug has been marked as a duplicate of bug 1377925 ***