K 10 svn:author V 2 mm K 8 svn:date V 27 2023-09-11T07:05:08.920481Z K 7 svn:log V 645 libarchive: merge security fix from vendor branch This commit fixes a couple of security vulnerabilities in the PAX writer: 1. Heap overflow in url_encode() in archive_write_set_format_pax.c 2. NULL dereference in archive_write_pax_header_xattrs() 3. Another NULL dereference in archive_write_pax_header_xattrs() 4. NULL dereference in archive_write_pax_header_xattr() Security: No known reference yet Obtained from: https://github.com/libarchive/libarchive/commit/1b4e0d0f9 MFC after: 3 days (cherry picked from commit f10f65999fe56e92f00b5bc5d27ac342cfea5364) Git Hash: af386f70fa0c8d0a605c50710283f6f59525bd05 Git Author: mm@FreeBSD.org END