CVE-2011-1777: Buffer Overflow
Multiple buffer overflows in the (1) heapaddentry and (2) relocatedir functions in archivereadsupportformatiso9660.c in libarchive through 2.8.5 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted ISO9660 image.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1777?
CVE-2011-1777 has a severity level that could lead to denial of service or potentially arbitrary code execution.
How do I fix CVE-2011-1777?
To fix CVE-2011-1777, upgrade to a version of libarchive that is greater than 2.8.5.
What software is affected by CVE-2011-1777?
CVE-2011-1777 affects multiple versions of libarchive up to 2.8.5, including versions 2.0 through 2.8.5.
What types of attacks can exploit CVE-2011-1777?
CVE-2011-1777 can be exploited by attackers using crafted ISO9660 images to cause application crashes or execute malicious code.
Is there a patch available for CVE-2011-1777?
Yes, a patch for CVE-2011-1777 is included in updates to libarchive after version 2.8.5.