CVE-2016-8689: High severity Libarchive libarchive vulnerability
A crafted 7zip archive with multiple headers of the same kind could cause calculated values from one being used to interpret the other, leading to out-of-bounds reads of adjacent structures on the heap.
Disclosed on oss-security:
http://seclists.org/oss-sec/2016/q3/516
Upstream issue:
https://github.com/libarchive/libarchive/issues/761
Upstream fix:
https://github.com/libarchive/libarchive/commit/7f17c79
Other sources
The readHeader function in archivereadsupportformat7zip.c in libarchive 3.2.1 allows remote attackers to cause a denial of service (out-of-bounds read) via multiple EmptyStream attributes in a header in a 7zip archive.
— MITRE
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2016-8689?
CVE-2016-8689 has a medium severity rating due to the potential for out-of-bounds reads.
How do I fix CVE-2016-8689?
To fix CVE-2016-8689, upgrade to the libarchive version 3.2.2 or later.
What software is affected by CVE-2016-8689?
CVE-2016-8689 affects libarchive versions prior to 3.2.2 as well as specific versions on multiple distributions.
What are the impacts of CVE-2016-8689 exploitation?
Exploitation of CVE-2016-8689 could lead to memory corruption and potential arbitrary code execution.
When was CVE-2016-8689 disclosed?
CVE-2016-8689 was disclosed publicly in the third quarter of 2016.