CVE-2018-5345: Buffer Overflow
A stack-based buffer overflow within GNOME gcab through 0.7.4 can be exploited by malicious attackers to cause a crash or, potentially, execute arbitrary code via a crafted .cab file.
Other sources
Versions of gcab <= 7.4 are vulnerable to a stack-based buffer overflow when extracting maliciously constructed .cab files. An attacker could potentially exploit this to execute arbitrary code.
Original bug: https://bugzilla.redhat.com/showbug.cgi?id=1527062
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/gcabto a version that resolves this vulnerability.Fixed in 1.0 - Upgrade
Upgrade
debian/gcabto a version that resolves this vulnerability.Fixed in 1.4-3Fixed in 1.5-1Fixed in 1.6-1Fixed in 1.6-2 - Upgrade
Upgrade
gcabto a version that resolves this vulnerability.Fixed in 7.4
Event History
Frequently Asked Questions
What is the severity of CVE-2018-5345?
CVE-2018-5345 is rated as a critical vulnerability due to its potential to allow arbitrary code execution through a crafted .cab file.
How do I fix CVE-2018-5345?
To mitigate CVE-2018-5345, update the GNOME gcab package to version 1.0 or above for Red Hat, or to 0.7-4ubuntu0.1 or later for Ubuntu.
What software is affected by CVE-2018-5345?
CVE-2018-5345 affects GNOME gcab versions up to and including 0.7.4.
What type of attack does CVE-2018-5345 enable?
CVE-2018-5345 enables a stack-based buffer overflow attack that could potentially crash the application or execute arbitrary code.
Is there a workaround for CVE-2018-5345?
Disabling the ability to process .cab files is a temporary workaround until the software can be updated to patch CVE-2018-5345.