Updated lha package fixes security vulnerability:
The lha command is vulnerable to a buffer overflow while processing level 0 and level 1 headers while extracting an archive (CVE-2016-1925).
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2016-0142.json"