CVE-2010-2800: Medium severity Cabextract Project Cabextract vulnerability
A deficiency has been reported in the way cabextract extracted certain Cabinet (.cab) files, using the MZ-ZIP and Quantum decompressors. If a local user was tricked into opening a specially-crafted .cab file, it could lead to infinite loop.
References: [1] http://bugs.gentoo.org/showbug.cgi?id=329891
Upstream patches: [2] http://libmspack.svn.sourceforge.net/viewvc/libmspack?view=revision&revision=90 [3] http://libmspack.svn.sourceforge.net/viewvc/libmspack?view=revision&revision=95 [4] http://libmspack.svn.sourceforge.net/viewvc/libmspack/libmspack/trunk/mspack/
Other sources
The MS-ZIP decompressor in cabextract before 1.3 allows remote attackers to cause a denial of service (infinite loop) via a malformed MSZIP archive in a .cab file during a (1) test or (2) extract action, related to the libmspack library.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2800?
CVE-2010-2800 is considered a vulnerability that can lead to an infinite loop in cabextract when processing specially-crafted CAB files.
How do I fix CVE-2010-2800?
To fix CVE-2010-2800, update cabextract to version 1.3 or newer where this vulnerability has been addressed.
Which versions of cabextract are affected by CVE-2010-2800?
CVE-2010-2800 affects cabextract versions up to and including 1.2, as well as earlier versions like 0.1 through 1.1.
What impact does CVE-2010-2800 have on systems?
The impact of CVE-2010-2800 can result in a denial of service condition if a user is tricked into opening a malicious CAB file.
Who is at risk from CVE-2010-2800?
Any local user who interacts with compromised CAB files while using impacted versions of cabextract is at risk of CVE-2010-2800.