CVE-2018-1000097: Buffer Overflow
Last updated 25 August 2025
Other sources
Sharutils sharutils (unshar command) version 4.15.2 contains a Buffer Overflow vulnerability in Affected component on the file unshar.c at line 75, function lookslikeccode. Failure to perform checking of the buffer containing input line. that can result in Could lead to code execution. This attack appear to be exploitable via Victim have to run unshar command on a specially crafted file..
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-1000097?
CVE-2018-1000097 is classified as a critical vulnerability due to the potential for remote code execution.
How do I fix CVE-2018-1000097?
To remediate CVE-2018-1000097, update the sharutils package to version 1:4.15.2-5 or later for Debian, or 1:4.15.2-2ubuntu0.1 or later for Ubuntu.
Which versions of sharutils are affected by CVE-2018-1000097?
Affected versions of sharutils include 4.15.2 and earlier, specifically those versions before the fixed releases.
What type of vulnerability is CVE-2018-1000097?
CVE-2018-1000097 is a buffer overflow vulnerability that occurs due to improper handling of input buffers.
What systems are affected by CVE-2018-1000097?
CVE-2018-1000097 affects Debian and Ubuntu systems running vulnerable versions of the sharutils package.