First published: Sun Sep 17 2017(Updated: )
libarchive 3.3.2 suffers from an out-of-bounds read within lha_read_data_none() in archive_read_support_format_lha.c when extracting a specially crafted lha archive, related to lha_crc16.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/libarchive | <3.3.3 | 3.3.3 |
Libarchive Libarchive | =3.3.2 | |
ubuntu/libarchive | <3.2.2-3.1ubuntu0.1 | 3.2.2-3.1ubuntu0.1 |
ubuntu/libarchive | <3.1.2-7ubuntu2.6 | 3.1.2-7ubuntu2.6 |
ubuntu/libarchive | <3.1.2-11ubuntu0.16.04.4 | 3.1.2-11ubuntu0.16.04.4 |
debian/libarchive | 3.4.3-2+deb11u1 3.6.2-1+deb12u1 3.7.4-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.