USN-8907-1: libgit2 vulnerability
USN-8907-1
It was discovered that libarchive had a signed integer overflow in its ZIP writer when handling encrypted entries with sizes near the maximum value. An attacker could possibly use this issue to cause libarchive to crash or execute arbitrary code.
A separate affected-products list was not included in the collected bulletin.
Separate remediation guidance was not included in the collected bulletin.
No CVE identifiers were listed in the collected bulletin.
The publication date reported by the vendor.
We collected the advisory from the official source.