libarchive: merge from vendor branchLibarchive 3.7.4 + three fixes from masterSecurity fixes: #2135 rar: Fix OOB in rar e8 filter (CVE-2024-26256) #2145 zip: Fix out of boundary access #2148 r
libarchive: merge from vendor branchLibarchive 3.7.4 + three fixes from masterSecurity fixes: #2135 rar: Fix OOB in rar e8 filter (CVE-2024-26256) #2145 zip: Fix out of boundary access #2148 rar: Fix OOB in rar delta filter #2149 rar: Fix OOB in rar audio filterImportant bugfixes: #2131 7zip: Limit amount of properties #2110 bsdtar: Fix error handling around strtol() usages #2116 passphrase: Never allow empty passwords #2124 rar: Fix "File CRC Error" when extracting specific rar4 archives #2123 xar: Avoid infinite link loop #2150 xar: Fix another infinite loop and expat error handling #2108 zip: Update AppleDouble support for directories #2071 zstd: Implement core detectiongit(cherry picked from commit 13d826ff947d9026f98e317e7385b22abfc0eace)
show more ...
libarchive: merge from vendor branchLibarchive 3.7.3New features: #1941 uudecode filter: support file name and file mode in raw mode #1943 7-zip reader: translate Windows permissions into UNI
libarchive: merge from vendor branchLibarchive 3.7.3New features: #1941 uudecode filter: support file name and file mode in raw mode #1943 7-zip reader: translate Windows permissions into UNIX permissions #1962 zstd filter now supports the "long" write option #2012 add trailing letter b to bsdtar(1) substitute pattern #2031 PCRE2 support #2054 add support for long options "--group" and "--owner" to tar(1)Security fixes: #2101 Fix possible vulnerability in tar error reporting introduced in f27c173Important bugfixes: #1974 ISO9660: preserve the natural order of links #2105 rar5: fix infinite loop if during rar5 decompression the last block produced no data #2027 xz filter: fix incorrect eof at the end of an lzip member #2043 zip: fix end-of-data marker processing when decompressing zip archives(cherry picked from commit b9128a37faafede823eb456aa65a11ac69997284)
libarchive: merge from vendor branchLibarchive 3.7.0Important changes (relevant to FreeBSD): #1814 Do not account for NULL terminator when comparing with "TRAILER!!!" #1818 Add ability to pro
libarchive: merge from vendor branchLibarchive 3.7.0Important changes (relevant to FreeBSD): #1814 Do not account for NULL terminator when comparing with "TRAILER!!!" #1818 Add ability to produce multi-frame zstd archives #1840 year 2038 fix for pax archives on platforms with 64-bit time_t #1860 Make single bit bitfields unsigned to avoid clang 16 warning #1869 Fix FreeBSD builds with WARNS=6 #1873 bsdunzip ported to libarchive from FreeBSD #1894 read support for zstd compression in 7zip archives #1918 ARM64 filter support in 7zip archivesMFC after: 2 weeksPR: 272567 (exp-run)
MFV r357783:Update libarchive to 3.4.2Relevant vendor changes: PR #1289: atomic extraction support (bsdtar -x --safe-writes) PR #1308: big endian fix for UTF16 support in LHA reader PR #1326
MFV r357783:Update libarchive to 3.4.2Relevant vendor changes: PR #1289: atomic extraction support (bsdtar -x --safe-writes) PR #1308: big endian fix for UTF16 support in LHA reader PR #1326: reject RAR5 files that declare invalid header flags Issue #987: fix support 7z archive entries with Delta filter Issue #1317: fix compression output buffer handling in XAR writer Issue #1319: fix uname or gname longer than 32 characters in pax writer Issue #1325: fix use after free when archiving hardlinks in ISO9660 or XAR Use localtime_r() and gmtime_r() instead of localtime() and gmtime()X-MFC-With: r356212,r356365,r356416MFC after: 1 week
MFV r348971,r348977:Sync libarchive with vendor.Relevant vendor changes: - check_symlinks_fsobj() without chdir() and fchdir() - bsdtar.1 manpage fixes - patches from OpenBSD to libarchive_f
MFV r348971,r348977:Sync libarchive with vendor.Relevant vendor changes: - check_symlinks_fsobj() without chdir() and fchdir() - bsdtar.1 manpage fixes - patches from OpenBSD to libarchive_fe/passphrase.c - version bumped to 3.4.0MFC after: 2 weeks
MFV r302264:Sync libarchive with vendor, bugfixes for tests:- fix tests on filesystems without birthtime support, e.g. UFS1 (1)- vendor issue #729: avoid use of C99 for-scope declarations in te
MFV r302264:Sync libarchive with vendor, bugfixes for tests:- fix tests on filesystems without birthtime support, e.g. UFS1 (1)- vendor issue #729: avoid use of C99 for-scope declarations in test_write_format_gnutar_filenames.cMFC after: 1 weekPR: 204157 (1)Approved by: re (hrs)
MFV r302003,r302037,r302038,r302056:Update libarchive to 3.2.1 (bugfix and security fix release)List of vendor fixes:- fix exploitable heap overflow vulnerability in Rar decompression (vendor
MFV r302003,r302037,r302038,r302056:Update libarchive to 3.2.1 (bugfix and security fix release)List of vendor fixes:- fix exploitable heap overflow vulnerability in Rar decompression (vendor issue 719, CVE-2016-4302, TALOS-2016-0154)- fix exploitable stack based buffer overflow vulnebarility in mtree parse_device functionality (vendor PR 715, CVE-2016-4301, TALOS-2016-0153)- fix exploitable heap overflow vulnerability in 7-zip read_SubStreamsInfo (vendor issue 718, CVE-2016-4300, TALOS-2016-152)- fix integer overflow when computing location of volume descriptor (vendor issue 717)- fix buffer overflow when reading a crafred rar archive (vendor issue 521)- fix possible buffer overflow when reading ISO9660 archives on machines where sizeof(int) < sizeof(size_t) (vendor issue 711)- tar and cpio should fail if an input file named on the command line is missing (vendor issue 708)- fix incorrect writing of gnutar filenames that are exactly 512 bytes long (vendor issue 682)- allow tests to be run from paths that are equal or longer than 128 characters (vendor issue 657)- add memory allocation errors in archive_entry_xattr.c (vendor PR 603)- remove dead code in archive_entry_xattr_add_entry() (vendor PR 716)- fix broken decryption of ZIP files (vendor issue 553)- manpage style, typo and description fixesPost-3.2.1 vendor fixes:- fix typo in cpio version reporting (Vendor PR 725, 726)- fix argument range of ctype functions in libarchive_fe/passphrase.c- fix ctype use and avoid empty loop bodies in WARC readerMFC after: 1 weekSecurity: CVE-2016-4300, CVE-2016-4301, CVE-2016-4302Approved by: re (kib)
MFV r299425:Update libarchive to 3.2.0New features:- new bsdcat command-line utility- LZ4 compression (in src only via external utility from ports)- Warc format support- 'Raw' format writer-
MFV r299425:Update libarchive to 3.2.0New features:- new bsdcat command-line utility- LZ4 compression (in src only via external utility from ports)- Warc format support- 'Raw' format writer- Zip: Support archives >4GB, entries >4GB- Zip: Support encrypting and decrypting entries- Zip: Support experimental streaming extension- Identify encrypted entries in several formats- New --clear-nochange-flags option to bsdtar tries to remove noschg and similar flags before deleting files- New --ignore-zeros option to bsdtar to handle concatenated tar archives- Use multi-threaded LZMA decompression if liblzma supports it- Expose version info for libraries used by libarchivePatched files (fixed compiler warnings):contrib/libarchive/cat/bsdcat.c (vendor PR #702)contrib/libarchive/cat/bsdcat.h (vendor PR #702)contrib/libarchive/libarchive/archive_read_support_format_mtree.c (PR #701)contrib/libarchive/libarchive_fe/err.c (vendor PR #703)MFC after: 1 monthRelnotes: yes
Update libarchive to 3.0.4
Update libarchive to 3.0.3Some of new features: - New readers: RAR, LHA/LZH, CAB reader, 7-Zip - New writers: ISO9660, XAR - Improvements to many formats, especially including ISO9660 and Zip
Update libarchive to 3.0.3Some of new features: - New readers: RAR, LHA/LZH, CAB reader, 7-Zip - New writers: ISO9660, XAR - Improvements to many formats, especially including ISO9660 and Zip - Stackable write filters to write, e.g., tar.gz.uu in a single pass - Exploit seekable input; new "seekable" Zip reader can exploit the Zip Central Directory when it's available; the old "streamable" Zip reader is still fully supported for cases where seeking is not possible.Full release notes available at: https://github.com/libarchive/libarchive/wiki/ReleaseNotes
Merge FreeBSD changes from usr.bin/tar to contrib/libarchive/libarchive_fe:r213469:Recognize both ! and ^ as markers for negated character classes.MFC after: 2 weeks
Add $FreeBSD$ to libarchive_fe headers where missing.MFC after: 2 weeks
Set svn:keywords to FreeBSD=%H for contrib/libarchiveMFC after: 2 weeks
Copy libarchive from vendor branch to contribMFC after: 2 weeks