CVE-2017-5601: High severity Libarchive libarchive vulnerability
An error in the lhareadfileheader1() function (archivereadsupportformatlha.c) in libarchive 3.2.2 allows remote attackers to trigger an out-of-bounds read memory access and subsequently cause a crash via a specially crafted archive.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-5601?
CVE-2017-5601 is classified as a high severity vulnerability due to its potential to cause a crash through an out-of-bounds read.
How do I fix CVE-2017-5601?
To fix CVE-2017-5601, upgrade libarchive to version 3.2.3 or later, where the vulnerability is patched.
What systems are affected by CVE-2017-5601?
CVE-2017-5601 specifically affects libarchive version 3.2.2.
How can attackers exploit CVE-2017-5601?
Attackers can exploit CVE-2017-5601 by crafting a malicious archive file that triggers the out-of-bounds read when processed.
What is the impact of CVE-2017-5601?
The impact of CVE-2017-5601 includes potential application crashes and disruption of service due to memory access issues.